Blocking MSN Messenger?
Tekno2k3 asks: "As a sysadmin for a financial company, I have been tasked with removing Instant Messaging from our network. The only service that is being difficult is MSN Messenger. It uses many methods to get around being blocked. These include using port 80, using it's own DNS servers for lookup, using MANY logon servers, and using reverse DNS lookup. Has anyone had any success in blocking Messenger?"
Then log all access to port 1863.
It won't work in all circumstances. When my DNS goes down, MSN Messenger still works. That's because it saves the last IP address in the registry. Just use regedit and you can confirm this for yourself. Trust me, I've written an MSN Messenger server, I know this shit.
Disable via the registry with login scripts
8 1/
/ Gr oup%20Policy%20Registry%20Editor.htm
http://www.winguides.com/registry/display.php/9
Or group policy
http://www.subvers.com/technobabble/html/tweaks
If you have wildcat machines that people just setup on their own, you have a larger problem.
Conformity is the jailer of freedom and enemy of growth. -JFK