EFW Support

Support => General Support => Topic started by: Sanjevan on Wednesday 09 June 2010, 01:25:29 pm



Title: Allow - Bittorrent
Post by: Sanjevan on Wednesday 09 June 2010, 01:25:29 pm
I am using endian firewall on my home network and I want to allow bittorrent traffic, but I am unable to get traffic to pass through even after allowing ports 10000-60000 in both my destination Nat to my workstation ip and incoming routed traffic with the same settings.

What am I doing wrong?

I am pretty sure because of the question you already new this, but I am a new to this.

Sanman


Title: Re: Allow - Bittorrent
Post by: arminf on Friday 11 June 2010, 02:58:18 am
Hi Sanman

Firewall incomming routed traffic option
Source <any> Destination your Bittorent client IP
there put the Ports in

Firewall outgoing traffic
Source your Bittorent IP
Destination RED
there put your ports in

Firewall Option "ALLOW" in both rules

Delete SNORT rule p2p
REBOOT your FW

this works for me. Good luck!


Title: Re: Allow - Bittorrent
Post by: Sanjevan on Friday 11 June 2010, 10:44:15 pm
I created the two rules and deleted the p2p snort rule. After the reboot I was still unable to download a torrent file.

Are there different ports for different bittorrent clients?

I received a connection timeout error. Is there anything I am missing?


Title: Re: Allow - Bittorrent
Post by: arminf on Wednesday 16 June 2010, 02:48:05 am
Ports for Bittorrent
6881-6889 tcp

http://www.dessent.net/btfaq/#ports

i uses 6881-6889 on the port forwarding from outside to my virtual machine
inside to outside i just put 1024:65535 in.. i dont care as it is a vm and i have a cleanstate snapshot.
nevertheless if you use the ranges on both rules it should work

test by disabling intrusion prevention to see if this was the case. then we could dig deeper into snort.
reboot the machine to the rules is really in place.

cheers armin

PS. if its a physical bittorent connect it to dmz and forward all ports in/out... make a clone before ;-)