 鲜花( 87)  鸡蛋( 1)
|
之前发过一个帖子有关Telus, Shaw 的比较, ! \0 a- z9 j: a; N' {
家用Telus 已经封锁了不少端口。 也随时不通知下说锁就锁, 非常讨厌。+ }8 O0 S* |4 X# Q/ v! l; V0 P
" ?. |- Y$ X2 l7 z5 cDoes Telus block any ports? 0 C9 Y7 E! ~- b }1 K
. s9 a/ p' A; B3 hThe only packages with no blocked ports at this time are the Server packages.
7 t4 |3 K+ C1 F: a5 j" Q9 U& T
4 r$ r f/ C" ZThe Blocked ports currently are:
3 P$ P# j6 j( d3 Y
! z/ J# [, g9 r4 \; _/ |: w8 D9 ZTCP 21 (ftp)
- b. g0 h( v, _7 x7 C7 b8 |$ YCustomers running an FTP server will no longer be able to have Internet users connect to their server. Many customers computers are used as FTP servers to store illegal files.
9 G# t h$ j5 x5 m7 d2 V
! D; }8 h1 r0 YTCP 25 (smtp)
: E, S+ Z) W4 y$ m' _Customers running a SMTP mail server will no longer be able to receive email requests. Also, Telus users will not be able to connect to non-Telus smtp servers on port 25. Prevent mail servers that operate as an open relay. Open relays are used without a customer?s knowledge to sends millions of pieces of Spam.2 ?3 _4 d' V) \9 S
$ z" c8 [) a# P, _5 |/ W
TCP 80 (www)- m; t$ G$ d& Q9 \2 h- U
Customers running a Web server will no longer be able to have Internet users connect to their server. Common exploit on old Window IIS server and Linux boxes that are not properly patched.# Q/ f* P1 m/ V$ T$ {
, c% u; Z2 t$ W: f
TCP 110 (pop3)
8 e- {- R. i8 s9 K/ p4 c' RCustomers running a POP mail server will no longer be able to have Internet users connect to the server. Prevent mail servers that operate as an open relay. Open relays are used without a customer?s knowledge to sends millions of pieces of Spam.1 e! [6 e' j4 C7 H5 q1 f9 z
# p& Z O) w- m8 M- ?: w. n( {6 t' iTCP 6667 (ircd)
" g1 P/ S( Y, M! p, VCustomers running a IRC server (Internet Relay Chat) will no longer be able to have Internet users connect to the server./ c+ \8 I7 c( c0 [
( u9 ^( {% R; J: J4 g
TCP/UDP 135-139 (dcom and netbios)/ P8 R7 F; k: M% U% t8 c
These ports are commonly exploited by worm viruses:: `( o5 C) P h% N( U8 R$ w
135 Windows RPC
6 Q/ |1 F- d% v6 n2 n9 ^136 PROFILE Naming System (basically unused), L+ W2 S$ j3 t0 P! J+ `1 C
137-139 Windows NetBios
& i/ n$ s! h3 O7 n3 h8 z
( N4 L" \, S i9 h+ DTCP/UDP 445 (ms-ds)% }% [5 O. W$ q5 \# b
Microsoft Directory Services - Customers that allow legitimate Internet users access to their computers will loose this ability. This allows hackers to directly connect to a Windows based computer and gain total control over the OS.
a* w8 ?4 K$ L x
. S o! X P& o- b# n7 }, JTCP/UDP 1433-1434 (ms-sql)5 b5 }2 x1 P7 O; j" f d( K% g+ z
Microsoft SQL server - Customer running an SQL server will no long be able to have Internet user connect to their server. There are several worm viruses that exploit holes in SQL server. |
|