Here I am

breaking network firewall???

Attention: TDR Forum Junkies
To the point: Click this link and check out the Front Page News story(ies) where we are tracking the introduction of the 2025 Ram HD trucks.

Thanks, TDR Staff

Military Tribute--WOW!

Vw Tdi

John, even though it's awsome to hear from you, you don't give me much hope. :p ;)



I know there is a way, because a buddy down the hall can get the stuff I'm after, but he has no clue what he did. :( :confused:



Andrew
 
Set up your computer to use a proxy server. Set the proxy address to whatever the host computer IP address is, the set the port to 80 (I think). This will make a small "bypass". It works here at Navarro. I had the same problem as you. Only problem is when you try to view secure pages (addresses that begin with https://) you have to turn off the proxy.



To set up a proxy server in Internet Explorer, go to "Tools", "internet options", then click the connections tab. At the bottom, click "Lan Settings".
 
Just cutting to the chase. It all depends on how good your network guy is. Their are so many ways to block sites, it is just a matter of what method he wanted to use. Even if your admin is using a proxy, you can still filter at the Proxy level, and this is before you even get to the firewall. The firewall for the most part filters at the port level and not the URL level. Usually another piece of software looks at the web address and blocks it. Either way, if he has it locked down, you are not going to get around it.



Hope to see ya soon!



John



edit. . just read the guy down the hall can get around it... In that case look at the Proxy settings. Course the admin guy could have the network access based on user...



Good luck
 
Last edited:
I take it your not the network analyst!!!!!! We use 3 seperate firewalls here at work. . and it can be a pain to get stuff thru. .

Could set up a 'NAT' and open it up that way. What brand of firewall are you using????



Rick

Network Analyst

Kings County Ca.
 
I'm the firewall admin for our company. First it depends on which firewall you're using and second how knowledgable your firewall admin is. If they know what they're doing, you are locked down. I get people all the time wanting to get through my firewall from both directions. If they want something bad enough, I'll download it, scan it for viruses, and give it to them. Open access in this day and age is inviting destruction:rolleyes:
 
Yeah!!!

There's a reason why sysadmins are paranoid. If you can't get through your firewall, there's a reason.



Talk to your sysadmin and be up front about it. If your reasons are sound, you'll get access to the outside world. If you just want to play on the Internet, well... . :)



Too much potential for mischief. That's why firewalls exist.



Tim
 
I see a lot of you do the same thing I do.



I work for the Information Security Office of a company that employees around 10,000 people.



I run a Sun 220 with Checkpoint 4. 1 and 2 Nokia 550's with CheckPoint NG tied to a 90 meg bandwidth internet connection.



Just in case I miss something, we are In the middle of installing a really large Intrusion Detection system.



Good luck getting access through my firewall! Of course I have to test the connection every once an a while and check TDR ;)
 
What are you downloading that won't go through the firewall? I don't think you should be having any trouble getting stuff from places like download.com but if your trying to use an mp3 file sharing service or using streaming audio/video forget about getting around the firewall. Those services hog bandwidth and it's not fair to others on the network if you're using them.



If there is a proxy system is filtering files with certain extensions, find a storage server on the Internet somewhere and change the extension name to . txt or something. Download the file and rename the extension back to it's original state.







Doc
 
It blocks programs such as WinMX(File Share like Kazaa), which my buddies use to share unreleased live versions of songs from singers that are our friends. This is legal because they are not released, plus our buddies know that we are doing it, they give one of us the cd, and then we share it.



So anyways, it also won't let us send some files over MSN messanger. Kinda annoying. :rolleyes:



Doc,

I wait untill around 1:00am before I do this, so that it is not unfair. We have a T-1, so bandwidth is not THAT much of an issue most of the time. What's not fair is how the guy down the hall can use the same program I can't. :rolleyes:



Andrew
 
Last edited:
When you connect to the internet, do you go through a proxy server? If so is it port 8080?



What you have to do is install a program that you can control what port it works on, then direct it to port 80 if your browser goes straight out the firewall, or point it at the proxy server if thats how your browser gets out.



But I don't blame the IT guys for not wanting you to use these programs. they can't control what viruses you bring in with them.





Originally posted by TxDieselKid

It blocks programs such as WinMX(File Share like Kazaa),

Andrew
 
No I'm not a sysadmin but I play one on TV

I still think your best choice is to do a little politic'ing with the boys in IT and explain to them what you'd like to do. Be up front with them. They have to be paranoid to be a sucessful (and employable) network admin. If a virus gets on the LAN or some outsider manages gain access, it's their ass. So I don't blame them for being somewhat hostile towards "unnecessary" Internet traffic. It's their network.



I know if I were doing it for a living I'd sure be a hard case about it.



Anymore when I install and set up a CT or an MR in a hospital the boys in IT are increasingly careful about what they allow. It's almost impossible anymore to set up a dial up connection for remote diag access. They want VPN. Can't blame 'em. :)



Tim
 
Re: No I'm not a sysadmin but I play one on TV

I agree, but the fact that the one guy can use Winmx and he can't means the network admin people are doing something wrong, or missing something. There really is no "bussiness" reason to allow a program like that access to the outside world, and 1000's or reasons to NOT allow it access!



If he goes to the IT people and brings up this fact, they will be all over his buddy trying to figure out how he CAN get through the firewall. Thats what I do all day, try to figure out the tricks the "insiders" come up with to get out through the firewall.



A popular one USED ;) to be http://www.gotomypc.com



Originally posted by NETim

They have to be paranoid to be a sucessful (and employable) network admin. Tim
 
Originally posted by TxDieselKid

Is there a way I can get around my network firewall, it's starting to tick me off. I can't download stuff. :mad:



If you were on my network, you'd have to have your department VP call me and request that you be allowed to download, unless I liked you. ;)
 
I remember the day I shut down all streaming audio sites. Man did I get complaints:{



Unfortunately, I had to let a few people that sign my checks have access. :rolleyes:



I told them to go buy a radio, but they hate changes!
 
LOL - It's a blast squeezing the network down so the users can't do all those fun things :)



TxDslKid - In your IE browser, look under Tools > Internet Options > Connections > Lan Settings and see if the Automatically Detect Settings or the Proxy Server check boxes are checked. The proxy server box, if checked, will have an IP address filled in the box and a port address.



Uncheck those boxes and see what happens. Or try changing the port to 80, like TowPro suggested.



It's possible the IT department is forcing policies on your computer, so you can't change the settings, but I doubt it if your buddy has gotten around it.



Did you have to follow a set of directions when you originally connected to the network? Did they give you a setup disk or anything?



Is your buddy using the same Operating System as you are?



Doc
 
Last edited:
Back
Top