Outpost Users Support Forum  
Outpost User Operated Support Forum
Agnitum Outpost Pro Release (OP, OSS, AV): 7.0.3.3392 [24-AUG-2010]
www.agnitum.com

Go Back   Outpost Users Support Forum > Agnitum Outpost Security Suite / Outpost Firewall/Outpost Antivirus > Rules Creation and Presets

Reply
 
Thread Tools
  #1  
Old 12-07-2004, 03:03 AM
Mac123 Mac123 is offline
Junior Member
 
Join Date: Dec 2004
Posts: 13
How should I configure proxy application along outpost?

Hi,
I'm new to outpost, just moved from Sygate pro, because of loopback vulnirability.

I'll appreciate your help, in how I should configure Outpost, with Tor, a proxy application, which accept connection at 127.0.0.1.

So, I want is tell outpost to restrict my browser to contact only the proxy, and don't accept any direct contact with internet, so allow the browser to connect to the localhost address 127.0.0.1 only.

Thanks for ur help
Reply With Quote
  #2  
Old 12-07-2004, 05:10 AM
minoka's Avatar
minoka minoka is offline
Moderator
 
Join Date: Mar 2002
Posts: 9,654
Re: How should I configure proxy application along outpost?

Hello Mac123 and welcome,

Assuming you are using OP 2.5, please have a look at A Guide to Producing a Secure Configuration for Outpost and Outpost 2.5 - what to expect first.
I also assume you have already TORifyed your browser. OP should prompt you for a rule for tor when you launch the browser and try to access a site. I use proxomitron, perhaps tor works the same. For ready reference, the rules for proxomitron look like this (in the preset.lst file):

[The Proxomitron]
VisibleState: 0
Exe:
The Proxomitron, proxomitron.exe
DefaultState: 1
RuleName: The Proxomitron connection
Protocol: TCP
RemotePort: 80-83, 443, 1080, 3128, 8080, 8088, 11523
Direction: Outbound
AllowIt

DefaultState: 1
RuleName: Block incoming Proxomitron connection
Protocol: TCP
Direction: Inbound
BlockIt

DefaultState: 1
RuleName: Allow local Proxomitron connection
Protocol: TCP
RemoteHost: 127.0.0.1
Direction: Inbound
AllowIt

Please don't hesitate to ask for more info/help if you need it.
Reply With Quote
  #3  
Old 12-08-2004, 10:55 AM
Paranoid2000's Avatar
Paranoid2000 Paranoid2000 is offline
Super Moderator
 
Join Date: Feb 2003
Location: North West, United Kingdom
Posts: 10,286
Re: How should I configure proxy application along outpost?

Quote:
Originally Posted by Mac123
I'm new to outpost, just moved from Sygate pro, because of loopback vulnirability.
Just a quick note - Outpost has a default global "Allow Loopback" rule which unfortunately creates a similar vulnerability. However this can be disabled (and the Secure Configuration guide mentioned previously does recommend this), after which any program trying to access a local proxy will then need a rule permitting it access to 127.0.0.1.

If you wish to restrict your browser to access via Tor only, then remove all existing rules and create the following (if your browser is connecting directly to the Tor client):

Browser Tor Access: Protocol TCP, Outgoing, Remote Host 127.0.0.1, Remote Port 9050, Allow

It is possible to use a web filter like Proxomitron with Tor (see the Wilders thread Setting up Tor/Proxomitron+SocksCap for details on this), in which case Proxomitron should have the above rule (along with one allowing incoming access from 127.0.0.1) and your browser should instead have the following:

Browser Proxomitron Access: Protocol TCP, Outgoing, Remote Host 127.0.0.1, Remote Port 8080, Allow

If you change the ports used for Proxomitron (8080 by default) or Tor (9050 by default) then you will need to amend the above rules accordingly. This just leaves the rules for the Tor client itself:

Tor Network Access: Protocol TCP, Outgoing, Remote Port 9001-9004, 9030-9033, 9100, Allow
Tor Incoming Connection: Protocol TCP, Incoming, Remote Host 127.0.0.1, Local Port 9050, Allow
Reply With Quote
  #4  
Old 12-09-2004, 02:49 AM
Mac123 Mac123 is offline
Junior Member
 
Join Date: Dec 2004
Posts: 13
Re: How should I configure proxy application along outpost?

Thanks for your valuable help.
Just to make sure, that I'm secure with my configuration:
I'm using Sockscap along TOR, and here is my rule for Firefox, and Trillian (Like ICQ):

Tor Config:

Tor Access 1: Protocol TCP, Outbound, Remote Host 127.0.0.1, Remote Port 80, 443, 9001-9004, 9030-9033, 9100, Allow
Tor Access 2: Protocol TCP, inbound, Remote Host 127.0.0.1,

Firefox config:

FF Access 1: Protocol TCP, Outbound, Remote Host 127.0.0.1,
FF Access 2: Protocol TCP, inbound, Remote Host 127.0.0.1,

Trillian config:

Trillian access: Protocol TCP, Outbound, Remote Host 127.0.0.1

Thanks for your feedback
Reply With Quote
  #5  
Old 12-09-2004, 10:18 PM
Paranoid2000's Avatar
Paranoid2000 Paranoid2000 is offline
Super Moderator
 
Join Date: Feb 2003
Location: North West, United Kingdom
Posts: 10,286
Re: How should I configure proxy application along outpost?

You could probably remove the incoming rule for Firefox (it does connect with itself on startup, apparently this is for the Password Manager function) but aside from that, the rules look OK.
Reply With Quote
Reply


Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump

Similar Threads
Thread Thread Starter Forum Replies Last Post
How does Outpost compare to the six firewalls in Winnetmag's survey? Calle Outpost Firewall General Discussions, Support, and Troubleshooting 30 01-11-2005 03:10 PM
Outpost 2.5 - what to expect Paranoid2000 Outpost Firewall General Discussions, Support, and Troubleshooting 0 10-14-2004 12:32 AM
Extended Outpost Uninstall/Reinstall Instructions David Outpost FREE FAQ 0 05-20-2003 03:28 PM


All times are GMT -12. The time now is 06:54 PM.


Powered by vBulletin® Version 3.8.4
Copyright ©2000 - 2010, Jelsoft Enterprises Ltd.