From: Elia S. on
Hello

I have troubles in this:




router(config-cmap)#match protocol http url
*(torrent|thepiratebay|isohunt|entertane|demonoid|btjunkie|mininova|flixflux)*
Assertion(text[n+1] == ')') failed at line 606 func parse_atom() file
.../inspect/re_regexp.c
Assertion(text[n+1] == ')') failed at line 606 func parse_atom() file
.../inspect/re_regexp.c
Assertion(text[n+1] == ')') failed at line 606 func parse_atom() file
.../inspect/re_regexp.c
Assertion(text[n+1] == ')') failed at line 606 func parse_atom() file
.../inspect/re_regexp.c

and it doesnt work.

I would like to create a class map that drops all http:// *word* (where word
is one of this word list).
Since I tried to put them one by one but it tells me that the max limit is
24 entries..
I would like to put them in a few of large lines.


(torrentorrent|thepiratebay|isohunt|entertane|demonoid|btjunkie|mininova|flixflu\x)
(vertor|h33t|zoozle|bitnova|bitsoup|meganova|fulldls|btbot|fenopy|gpirate)
(sumotorrent|bitmonster|azureus|utorrent|vuze|torrentreactor|commonbits)
(torrentz|bitlord|warez|bit-torrent)

I am not able to insert them in the match protocol http url
I can put them one by one but after the first 24 it stops accepting them.
I am working actually (for test) on a C877 48F/256D with 15.0(1)M2
advipservices k9 ios.
can you help me ?

I would like to implement them on a C2651xm 48F/256D that will work as
single appliance.

thank you

From: Rob on
Elia S. <adminNOSPAM(a)spadhausen.com> wrote:
> Hello
>
> I have troubles in this:
>
>
>
>
> router(config-cmap)#match protocol http url
> *(torrent|thepiratebay|isohunt|entertane|demonoid|btjunkie|mininova|flixflux)*

This is not a feasible way of blocking sites you don't want.
There are just too many of them, and their names change too frequently.
From: Elia S. on
I know that it is better a proxy server, but since Cisco has some L7
filtering I would like to use it!



"Rob" <nomail(a)example.com> ha scritto nel messaggio
news:slrni584g3.ohf.nomail(a)xs8.xs4all.nl...
> Elia S. <adminNOSPAM(a)spadhausen.com> wrote:
>> Hello
>>
>> I have troubles in this:
>>
>>
>>
>>
>> router(config-cmap)#match protocol http url
>> *(torrent|thepiratebay|isohunt|entertane|demonoid|btjunkie|mininova|flixflux)*
>
> This is not a feasible way of blocking sites you don't want.
> There are just too many of them, and their names change too frequently.

From: alexd on
Meanwhile, at the comp.dcom.sys.cisco Job Justification Hearings, Elia S.
chose the tried and tested strategy of:

> I know that it is better a proxy server, but since Cisco has some L7
> filtering I would like to use it!

If you just want to use router features for the hell of it, and you know
using a proxy is a better idea, then how about using WCCP?

--
<http://ale.cx/> (AIM:troffasky) (UnSoEsNpEaTm(a)ale.cx)
20:48:34 up 14 days, 11:19, 6 users, load average: 0.07, 0.04, 0.00
Qua illic est accuso, illic est a vindicatum
From: Elia S. on
"alexd" <troffasky(a)hotmail.com> ha scritto nel messaggio
news:7599110.AtOVxAJdgD(a)ale.cx...
> Meanwhile, at the comp.dcom.sys.cisco Job Justification Hearings, Elia S.
> chose the tried and tested strategy of:
>
> If you just want to use router features for the hell of it, and you know
> using a proxy is a better idea, then how about using WCCP?

Yesterday in the evening, I thank seriously about a squid proxy with wccp :)