5 ms·
This appears to be running on port 4567, just FYI many firewalls won't allow nonstandard ports. Perhaps port forwarding or a DNAT rule could help you reach a l
by click170 11y ago
This appears to be running on port 4567, just FYI many firewalls won't allow nonstandard ports. Perhaps port forwarding or a DNAT rule could help you reach a larger audience?
- jewel 11y agoHere's a screenshot for those behind corporate firewalls: http://i.imgur.com/pwSaDY4.png http://i.imgur.com/pwSaDY4.png
- rplnt 11y agoHaving a domain name would help too.
- JonnieCache 11y agoThe IP address makes it funnier for some reason.
- lucb1e 11y agoYeah I don't get these corporate firewalls, as a cyber security student I've yet to see a single occasion where blocking a port has helped block an attack rather than annoy powerusers (or normal users also, occasionally). So that's why I use https://torproject.org/download https://torproject.org/download the whole day and never have any trouble with blocked sites (e.g. Pastebin; Slideshare) or blocked ports (e.g. :8080 was used today by some random site in XHR).
- freehunter 11y agoIf you're studying security and you think TOR will work to get you past corporate firewalls... good luck out there. Keep studying.
- glass- 11y agoTor with a bridge on port 443 (or even 80) will get past anything that only blocks non-standard ports.
- benedikt 11y agoTor also has a clever thing called "pluggable transport" that was made to solve exactly this problem.
- freehunter 11y agoAnd corporations have this clever thing called a security team and SIEMs meant to find this exact type of activity.
- lucb1e 11y agoThanks for the snarky remark, but I posted that post via Tor from inside the corporate firewall. In fact I mentioned that I use it the whole day. If that doesn't prove it works, I don't know what should. The whole point of the Tor network is that anyone can access the Internet through it uncensored, regardless of countries' or corporate firewalls.
- freehunter 11y agoThat's true. You probably can get out. Until the security team catches you, which they really, really can do. Trust me, I do it for a living. And then you're in trouble for violating the terms of your employment, and then HR gets involved, and then you are fired. Like I said, if you're going to work in security, you're going to have to consider a lot more than can it be done. Corporate security is more closely tied to HR and the business than it is IT. You can't break the rules just because it's technically possible. It would be your job to find the people who are doing exactly that and report them to HR.
- lucb1e 11y ago> Until the security team catches you, which they really, really can do. Trust me, I do it for a living. True, I don't doubt they can if they wanted to, simply look for connections to known Tor nodes (of which there is a list). So long as I don't bother using a bridge node of course. As for being fired, I don't think it's that strict. The company policy is aimed at blocking people from posting the company's slides on Slideshare, using icons from icon sites without a license (some icon site is also blocked) or pasting sensitive data on Pastebin by accident. As long as I don't do these things, I am not violating corporate policy, while I do need some of these sites to do my work. If they make shitty policies that apply to the people who don't know what they are doing as well as to the people who do know what they are doing (or even need some of those sites), they can expect people to work around it. Rules are to be followed within reason. And if people are that strict, I don't want to stay in that company. Even as a student I'm asked to do work enough times that I don't doubt I could switch jobs in a matter of weeks.
- 11y ago
- unoti 11y agoIn the real world, it's common to see network professionals who apparently specialize in preventing communications between computers. Similarly, it's common to see DBA's whose number one goal seems to be preventing anyone from accessing the data. And it's also common to find engineers who seem focused on seeing every goal as impossible, and business analysts who when they hear what you want tell you why you can't have it. It's not rational but it's very common!
- click170 11y agoI humbly submit you haven't seen an environment that was high security. There's two general ways to treat Internet traffic, whitelisting and blacklisting. Many companies will simply use blacklists. These are easy to bypass as you are well aware. I have seen more than one environment that was whitelist based, no machine can access any other machine that isn't required for it to do it's job. Anyone needing to override a block enters a username, password, and reason, if they have the authority to do so, which leaves an audit trail. Security and convenience is often a trade off, you do a risk assessment to determine if it's worth the risk to you and your company. For many people and companies, it's not, so they blacklist.
- adrenalinerush6 11y agocurrently up on port 8080, best i could do at work http://52.4.212.135:8080/ http://52.4.212.135:8080/
- a3r0 11y agoIt should be on port 4011