How to block unnecessary port or allow important port?

How to block unnecessary port or allow important port?
It is a students hostel network, and our ISP is offer us a low bandwidth. So i wish to block all unimportant port to disable they use some program for download.
Is this the port that cannot be block?
http://www.webopedia.com/quick_ref/portnumbers.asp

How to block unnecessary port or allow important port?

I want to block most of the port because my ISP offer my network small bandwidth 13Mbps for 480 clients network. I want to block all services except web suffering purpose for the network.

A Hint:

Any malicious user can set any port for any service,
like P2P on DNS, WEB o VoIP port.
do not waste time to try to block ports for load balancing.

Use HotSpot instead.

Each students has the bandwidth limit you set.

yeah you are better off using the Proxy + whitelist if you only want to make some services available. It will block everything else. Can also setup firewall rules to allow only specific ports and block the rest.


As far as limiting speeds go, can either use the hotspotor a simple queue to limit the bandwidth available to each user.

I had set each user limit, but now i want block all ports except the port that allow for suffering website.
It is port 80, 443 and port dns cannot be block?

Usually port 80 and 443 TCP are used for web http / https
Never block port 53 TCP and 53 UDP, are used for DNS.
Do not block ICMP.

Also warning about block port 8291 TCP: Winbox!!

But remember, all type of service can be configured on port 80, 443 and 53!

I had set each user limit, but now i want block all ports except the port that allow for suffering website.
It is port 80, 443 and port dns cannot be block?

I want to block most of the port because my ISP offer my network small bandwidth 13Mbps for 480 clients network. I want to block all services except web suffering purpose for the network.

I want to block most of the port because my ISP offer my network small bandwidth 13Mbps for 480 clients network. I want to block all services except web suffering purpose for the network.