 鲜花( 87)  鸡蛋( 1)
|
之前发过一个帖子有关Telus, Shaw 的比较, / w3 ?" y" z0 S
家用Telus 已经封锁了不少端口。 也随时不通知下说锁就锁, 非常讨厌。( I+ L- _9 Z# D+ }7 \: w3 O
6 W$ O; B' r2 v' M6 o( ?+ CDoes Telus block any ports?
4 O3 p- t0 O9 O! x H2 `* y) }
. B7 l8 t( f: B3 f, O- mThe only packages with no blocked ports at this time are the Server packages.
1 [1 O3 G- C4 I, [; m$ B2 S5 R3 S! Z$ ]
The Blocked ports currently are:
: F! a% `/ D& M( d0 E1 D( }- Z
O) B2 W9 { j1 f, |TCP 21 (ftp)
$ N% R; |4 u \5 OCustomers running an FTP server will no longer be able to have Internet users connect to their server. Many customers computers are used as FTP servers to store illegal files.
1 ^. h0 Z1 d3 u8 T* H! [! X& F: t- g3 v7 i
TCP 25 (smtp)
( S2 j2 H1 b$ u" ?Customers running a SMTP mail server will no longer be able to receive email requests. Also, Telus users will not be able to connect to non-Telus smtp servers on port 25. Prevent mail servers that operate as an open relay. Open relays are used without a customer?s knowledge to sends millions of pieces of Spam./ h2 |+ {" V; {* D9 ?$ T
`' p" }2 J2 |; ]" V3 |: o. U, @TCP 80 (www)( _( N7 I) ?3 r6 u1 V- o
Customers running a Web server will no longer be able to have Internet users connect to their server. Common exploit on old Window IIS server and Linux boxes that are not properly patched.+ _' w0 O3 L7 ^( m8 J
* X2 x) ]; N ] w U
TCP 110 (pop3)$ \8 e: ^1 L3 M% A
Customers running a POP mail server will no longer be able to have Internet users connect to the server. Prevent mail servers that operate as an open relay. Open relays are used without a customer?s knowledge to sends millions of pieces of Spam.4 P, Y, J+ A8 O6 X- J5 Z; O
6 E9 B9 d6 s# {. L, uTCP 6667 (ircd)
+ e3 Y& s" T5 H* fCustomers running a IRC server (Internet Relay Chat) will no longer be able to have Internet users connect to the server.
) {2 C3 E- a( R: S+ e& s! A$ d% w' ~
TCP/UDP 135-139 (dcom and netbios)
' h# H9 | V( g; C) oThese ports are commonly exploited by worm viruses:$ Y1 B" [) f) i: g4 X
135 Windows RPC# S1 N5 g( U8 d/ k9 x2 R/ P) M$ {% p
136 PROFILE Naming System (basically unused)% A0 G2 g( d2 o4 N* R* t
137-139 Windows NetBios7 Q0 ]: x) d }5 X
- F% }; h5 K9 _TCP/UDP 445 (ms-ds)" e& l! P1 A. w O4 B. I
Microsoft Directory Services - Customers that allow legitimate Internet users access to their computers will loose this ability. This allows hackers to directly connect to a Windows based computer and gain total control over the OS.
- R1 b! E% `. o$ t7 S4 U" l% H5 d% A+ ~
TCP/UDP 1433-1434 (ms-sql)
. }8 ~& V' [' U' B6 X* \0 `Microsoft SQL server - Customer running an SQL server will no long be able to have Internet user connect to their server. There are several worm viruses that exploit holes in SQL server. |
|