Welcome to ISAserver.org

Forums | Register | Login | My Profile | Inbox | RSS RSS icon | My Subscription | My Forums | Address Book | Member List | Search | FAQ | Ticket List | Log Out

ICQ through SOCKS 4 filter

Users viewing this topic: none

Logged in as: Guest
  Printable Version
All Forums >> [ISA Server 2004 Misc.] >> Gaming >> ICQ through SOCKS 4 filter Page: [1]
Login
Message << Older Topic   Newer Topic >>
ICQ through SOCKS 4 filter - 22.Dec.2004 10:03:00 AM   
ExtraDragon

 

Posts: 9
Joined: 24.Sep.2001
From: Russia
Status: offline
Hi All!

I try to configure ISA 2004 Server to support ICQ clients via SOCKS 4 Protocol.

My Config IS:
1. Enable Socks 4 application filter on port 1088 (yes, it is not standart, but it was on previous ISA 2000 server)
2. Add new Firewall rule for ICQ 2000 (connect to port 5190) protocol (from Local Host to External)
3. Add new Firewall rule for SOCKS (connect to port 1088) Protocol (connect from Internal to Local Host) [i`m no sure that this rule is necessarily needed, but...]
4. ISA 2004 Server as HTTP proxy function properly

Than i try to connect ICQ via SOCKS 4 - i have error.

In firewall ISA 2004 server logs i can see some records:
#Fields: computer date time IP protocol source destination original client IP source network destination network action status rule application protocol bytes sent bytes sent intermediate bytes received bytes received intermediate connection time connection time intermediate username agent session ID connection ID
SRV 2004-12-22 08:51:50 TCP <Ext ISA IP> 64.12.161.185:5190 - Local Host External Denied 0xc0040012 - ICQ 2000 0 0 0 0 - - - - 42 107
SRV 2004-12-22 08:51:52 TCP <Int Client IP>:2298 <Int ISA IP>:1088 <Int Client IP> Internal Local Host Establish 0x0 - SOCKS 4 0 0 0 0 - - - - 43 108
SRV 2004-12-22 08:51:52 TCP <Int Client IP>:2298 <Int ISA IP>:1088 <Int Client IP> Internal Local Host Terminate 0x80074e20 - SOCKS 4 177 177 176 176 - - - - 43 108

Imho, SOCKS application filter can not connect to internet.

Same (i have in view ICQ via SOCKS) configuration on ISA 2000 server work fine.

What i doing wrong?

---
Best regards,
ExtraDragon

PS. AS ICQ Client i test Miranda v.3.3.1 and Original ICQ 2003a Client
Post #: 1
RE: ICQ through SOCKS 4 filter - 22.Dec.2004 2:00:00 PM   
tshinder

 

Posts: 47490
Joined: 10.Jan.2001
From: Texas
Status: offline
Hi Dragon,

I'll move this to the gaming section, as ICQ is outside of business application of the ISA firewall.

Thanks!
Tom

(in reply to ExtraDragon)
Post #: 2
RE: ICQ through SOCKS 4 filter - 27.Dec.2004 7:13:00 AM   
ExtraDragon

 

Posts: 9
Joined: 24.Sep.2001
From: Russia
Status: offline
I solve this problem myself [Smile]

During tuning ISA 2004 server for strong security i was disable "Internet Access" rule in "Network rules" sheet.

So, when i saw the architecture of ISA 2000 (yes, exactly 2000) i suppose that packet processing algorithm not differs from ISA 2004 server and, therefore, packet _must_ pass NAT Driver (also known as Secure NAT module).

Hence, i was enable "Internet Access" rule and ICQ now that work normally.

---
Best Regards,
ExtraDragon.

(in reply to ExtraDragon)
Post #: 3

Page:   [1] << Older Topic    Newer Topic >>
All Forums >> [ISA Server 2004 Misc.] >> Gaming >> ICQ through SOCKS 4 filter Page: [1]
Jump to:

New Messages No New Messages
Hot Topic w/ New Messages Hot Topic w/o New Messages
Locked w/ New Messages Locked w/o New Messages
 Post New Thread
 Reply to Message
 Post New Poll
 Submit Vote
 Delete My Own Post
 Delete My Own Thread
 Rate Posts