Blocking MSN Messenger?
Tekno2k3 asks: "As a sysadmin for a financial company, I have been tasked with removing Instant Messaging from our network. The only service that is being difficult is MSN Messenger. It uses many methods to get around being blocked. These include using port 80, using it's own DNS servers for lookup, using MANY logon servers, and using reverse DNS lookup. Has anyone had any success in blocking Messenger?"
Fire everyone who's caught using it. Eventually you'll fire enough people that they'll be afraid to open it. Just like the RIAA suing P2P users... eventually nobody will share because they'll be afraid of lawsuits.
In addition to blocking MSN on the network, why not kill the software? This page discusses in gory detail the various methods of crippling/uninstalling/haxoring MSN software on the user machine, and making sure it won't come back. You have to be careful, as there are right ways and wrong ways to do it. My favourite method is to uninstall the software (made possible on XP via a convoluted run command), then place a blank file called "msn messenger" in Program Files. Installer won't work, and the user never goes into Program Files! It works.
Having the software right out of the computer is a good thing, because then it can't begin to pester the user or remind them of their painful inability to chat.
Blcoking 1863 does work, as I use that method myself.
? suckerid=bIcycleSExfiEND&referrid=1269
... etc... you get the idea.
The only problem is that they will move on to the next messenger that works (like Yahoo! etc).
If you wanted to be really insidious and get people to self police themselves, log all messenger messages and put a new section on your companies Intranet user customised page - something like "Hello xxxx, here are your last few messenger messages:
[bIcycleSExfiEND] w00t!
[cute^babe7599] SO BABEE U WANA C MY PIC?
[bIcycleSExfiEND] yeah - send it
[cute^babe7599] http://www.crackparty.com/showpictrojanisemachine
...
Please contact the helpdesk if you would like a complete log.
Have a nice day."
...and below that:
Here are your last few web accesses:
Get a MSN sniffer... the (very beta) one I used was called MSN666.
Tell everyone that you're sniffing MSN messenger traffic, and that you can trace it to a person esaily. Wait a day. Post a few innocuous messages between people on the noticeboard to prove it. Add a scrawled note on the bottom of the message saying "and , FatShaft42, you are one SICK Bastard! I'll be passing *your* messages onto HR!!" for maximum effect.
You are in a twisty maze of processor lines, all alike.
There is a lot of hype here.
Or not. On second thoughts perhaps not a good idea. Still, it's your call.
Now wash your hands.
This is how I blocked MSN Messenger... bought SuSE Linux 8.1 professional. Installed it and no more MSN Messenger for me!!
LOL, that reminded me of this gem from Dilbert newsletter #43: