Fucking Firewall!!

OT: anything goes!

Moderator: Edi

Post Reply
User avatar
Luke Starkiller
Jedi Knight
Posts: 788
Joined: 2002-08-08 08:55pm
Location: Ottawa, Canada

Fucking Firewall!!

Post by Luke Starkiller »

I am a university student living in residence and consequently have no choice but to get my internet access throught the university. This would not be a problem except for one thing, they somehow block just about everything except for web-browsers. I can't even use IRC to chat with my friends. Does anybody know how they do this and how to get around it?
What kind of dark wizard in league with nameless forces of primordial evil ARE you that you can't even make a successful sanity check versus BOREDOM? - Red Mage
User avatar
Darth Wong
Sith Lord
Sith Lord
Posts: 70028
Joined: 2002-07-03 12:25am
Location: Toronto, Canada
Contact:

Post by Darth Wong »

That's easy. Shut down all port forwarding on the router (total firewall) and then set up a transparent proxy server. Nothing will get through except for properly formatted HTTP requests.

If they're not as strict, they might just have a port-forwarding setup which allows port 80 through but nothing else. This would theoretically allow you to tunnel other traffic through port 80, but I don't know how you would make IRC work over the thing unless you had some host on the outside which would translate it back.
Image
"It's not evil for God to do it. Or for someone to do it at God's command."- Jonathan Boyd on baby-killing

"you guys are fascinated with the use of those "rules of logic" to the extent that you don't really want to discussus anything."- GC

"I do not believe Russian Roulette is a stupid act" - Embracer of Darkness

"Viagra commercials appear to save lives" - tharkûn on US health care.

http://www.stardestroyer.net/Mike/RantMode/Blurbs.html
User avatar
GrandMasterTerwynn
Emperor's Hand
Posts: 6787
Joined: 2002-07-29 06:14pm
Location: Somewhere on Earth.

Re: Fucking Firewall!!

Post by GrandMasterTerwynn »

Luke Starkiller wrote:I am a university student living in residence and consequently have no choice but to get my internet access throught the university. This would not be a problem except for one thing, they somehow block just about everything except for web-browsers. I can't even use IRC to chat with my friends. Does anybody know how they do this and how to get around it?
Typically they do this by only allowing certain "ports" out of the firewall. For example, port 22 is the port usually for SSH/SSH2 terminals and port 80 is used for HTTP. Trying to circumvent your school's firewall would probably get your account at the university yanked. Not to mention the school's traffic likely passes through only a handful of connection points to the outside world, so there isn't really a way to get around the firewall.
User avatar
Luke Starkiller
Jedi Knight
Posts: 788
Joined: 2002-08-08 08:55pm
Location: Ottawa, Canada

Post by Luke Starkiller »

Thanks for the replies, I will probably just have to wait it out till I move out and get a real connection. They technically can't yank my connection though since the fools never gave us a TOS to sign, the most we have is that we pay them and they provide service; as long as I am not doing anything illegal they can't do squat.
What kind of dark wizard in league with nameless forces of primordial evil ARE you that you can't even make a successful sanity check versus BOREDOM? - Red Mage
User avatar
Pu-239
Sith Marauder
Posts: 4727
Joined: 2002-10-21 08:44am
Location: Fake Virginia

Post by Pu-239 »

Firewall piercing (Don't do this): http://www.ibiblio.org/pub/Linux/docs/H ... rcing.html
Or you can just hook up a modem and connect it to your phone line (assuming you have one)

ah.....the path to happiness is revision of dreams and not fulfillment... -SWPIGWANG
Sufficient Googling is indistinguishable from knowledge -somebody
Anything worth the cost of a missile, which can be located on the battlefield, will be shot at with missiles. If the US military is involved, then things, which are not worth the cost if a missile will also be shot at with missiles. -Sea Skimmer


George Bush makes freedom sound like a giant robot that breaks down a lot. -Darth Raptor
User avatar
Darth Wong
Sith Lord
Sith Lord
Posts: 70028
Joined: 2002-07-03 12:25am
Location: Toronto, Canada
Contact:

Post by Darth Wong »

None of those tricks will work against a totally blocked firewall with a transparent proxy running.
Image
"It's not evil for God to do it. Or for someone to do it at God's command."- Jonathan Boyd on baby-killing

"you guys are fascinated with the use of those "rules of logic" to the extent that you don't really want to discussus anything."- GC

"I do not believe Russian Roulette is a stupid act" - Embracer of Darkness

"Viagra commercials appear to save lives" - tharkûn on US health care.

http://www.stardestroyer.net/Mike/RantMode/Blurbs.html
User avatar
Arthur_Tuxedo
Sith Acolyte
Posts: 5637
Joined: 2002-07-23 03:28am
Location: San Francisco, California

Post by Arthur_Tuxedo »

Pu-239 wrote:Firewall piercing (Don't do this)
Why not? Is it illegal?
"I'm so fast that last night I turned off the light switch in my hotel room and was in bed before the room was dark." - Muhammad Ali

"Dating is not supposed to be easy. It's supposed to be a heart-pounding, stomach-wrenching, gut-churning exercise in pitting your fear of rejection and public humiliation against your desire to find a mate. Enjoy." - Darth Wong
User avatar
CmdrSweevo
Requiescat in Pace
Posts: 128
Joined: 2002-08-27 05:53am

Post by CmdrSweevo »

Luke Starkiller wrote:Thanks for the replies, I will probably just have to wait it out till I move out and get a real connection. They technically can't yank my connection though since the fools never gave us a TOS to sign, the most we have is that we pay them and they provide service; as long as I am not doing anything illegal they can't do squat.
Um, you might want to track your TOS down and read them. The first line of ours says we agreed to it when we accepted our university place.
User avatar
InnerBrat
CLIT Commander
Posts: 7469
Joined: 2002-11-26 11:02am
Location: In my own mind.
Contact:

Post by InnerBrat »

As a final year student, I'm going to interject here about the morality of using your university computers for things like IRC. Some people actually need the computers for research and writing up essays, and there's nothing more annoying than standing waiting for HALF AN HOUR for a useable computer when there is a deadline, while people use the college computers for IRC and posting onscience fiction message boards. College computers are there as vital learning tools.

Luke, look around you, is there anyone waiting to use a computer for actual bona fide college work? If so, then bugger off and let them use yours. You have paid for your education, not unlimited internet entertainment.


--edit--
I've just realised your talking about your personal access in your room, not a public cluster room, but I'm still posting this so that it can be read by anyone else using university computers.
"I fight with love, and I laugh with rage, you gotta live light enough to see the humour and long enough to see some change" - Ani DiFranco, Pick Yer Nose

"Life 's not a song, life isn't bliss, life is just this: it's living." - Spike, Once More with Feeling
User avatar
Vertigo1
Defender of the Night
Posts: 4720
Joined: 2002-08-12 12:47am
Location: Tennessee, USA
Contact:

Post by Vertigo1 »

What you might want to do is track down the network admin and ask him/her nicely to open up the ports necessary for your IRC program. (usually 6667, 7000, or 6699.)
"I once asked Rebecca to sing Happy Birthday to me during sex. That was funny, especially since I timed my thrusts to sync up with the words. And yes, it was my birthday." - Darth Wong

Leader of the SD.Net Gargoyle Clan | Spacebattles Firstone | Twitter
User avatar
Alferd Packer
Sith Marauder
Posts: 3706
Joined: 2002-07-19 09:22pm
Location: Slumgullion Pass
Contact:

Post by Alferd Packer »

Try playing a game like Counterstrike, which uses ports in the 27000s, IIRC. If you can play that, then they're only blocking a specific range of ports, like say up to 8000s.
"There is a principle which is a bar against all information, which is proof against all arguments and which cannot fail to keep a man in everlasting ignorance--that principle is contempt prior to investigation." -Herbert Spencer

"Against stupidity the gods themselves contend in vain." - Schiller, Die Jungfrau von Orleans, III vi.
Nathan F
Resident Redneck
Posts: 4979
Joined: 2002-09-10 08:01am
Location: Around the corner
Contact:

Post by Nathan F »

Man, the University of Tennessee has it good. They dont give a rats arse as to what we do...
Nathan F
Resident Redneck
Posts: 4979
Joined: 2002-09-10 08:01am
Location: Around the corner
Contact:

Post by Nathan F »

innerbrat wrote:As a final year student, I'm going to interject here about the morality of using your university computers for things like IRC. Some people actually need the computers for research and writing up essays, and there's nothing more annoying than standing waiting for HALF AN HOUR for a useable computer when there is a deadline, while people use the college computers for IRC and posting onscience fiction message boards. College computers are there as vital learning tools.

Luke, look around you, is there anyone waiting to use a computer for actual bona fide college work? If so, then bugger off and let them use yours. You have paid for your education, not unlimited internet entertainment.


--edit--
I've just realised your talking about your personal access in your room, not a public cluster room, but I'm still posting this so that it can be read by anyone else using university computers.
I just use my own dorm computer. The public comps are always crowded and slow as Christmas
User avatar
Vertigo1
Defender of the Night
Posts: 4720
Joined: 2002-08-12 12:47am
Location: Tennessee, USA
Contact:

Post by Vertigo1 »

Hey man, which UT campus do you attend? Martin?
"I once asked Rebecca to sing Happy Birthday to me during sex. That was funny, especially since I timed my thrusts to sync up with the words. And yes, it was my birthday." - Darth Wong

Leader of the SD.Net Gargoyle Clan | Spacebattles Firstone | Twitter
User avatar
phongn
Rebel Leader
Posts: 18487
Joined: 2002-07-03 11:11pm

Post by phongn »

Northwestern University didn't really care what you did, but they had packet shaping hardware to make sure all of the P2P apps weren't sucking up the bandwidth. Unfortunately, they shut down the OpenNap server on campus :(

Here at USF, their restrictions seem more lax, and they appear have unrestricted Internet2 access for the students :D
Post Reply