As per the network policy, we have to block all torrent traffic from the network. To do this, I used to block all ports above 1024 on my firewall/proxy devices. But due to this, many other applications that use non-standard ports are not able to function, especially mobile applications, and users are complaining because of this.
Is there an effective way of blocking torrents on my network?
A minimum number of ports, or few specific ports, or application-level filtering?
We have Cisco Iron Port Security and Cisco ASA 5500 Firewall devices.