 鲜花( 87)  鸡蛋( 1)
|
之前发过一个帖子有关Telus, Shaw 的比较,
4 v- O* ^" Y Q8 w6 O$ q( a家用Telus 已经封锁了不少端口。 也随时不通知下说锁就锁, 非常讨厌。. a, u7 g) Q* F, L" K3 l
C, }4 D0 G* t9 p% c" xDoes Telus block any ports?
0 w: Q @4 Q' Y' o" x; H: n( K( D$ z9 v& O7 D
The only packages with no blocked ports at this time are the Server packages. , a' l6 [& H7 M( b1 N
" c$ c3 K8 W9 i: l- |5 U0 p) aThe Blocked ports currently are:
. I- T( e; }2 V2 E: j9 F7 O3 O" g$ v- e8 s* z/ \
TCP 21 (ftp)0 p' H- v, O% t- {2 s
Customers running an FTP server will no longer be able to have Internet users connect to their server. Many customers computers are used as FTP servers to store illegal files.# Z8 k+ Z2 D. |* z4 s$ E3 D
% U& A' A9 ?& w* V: h/ V
TCP 25 (smtp)( }% U1 \; Z3 l5 v# m& `: x& l
Customers running a SMTP mail server will no longer be able to receive email requests. Also, Telus users will not be able to connect to non-Telus smtp servers on port 25. Prevent mail servers that operate as an open relay. Open relays are used without a customer?s knowledge to sends millions of pieces of Spam.
1 |( s1 k, j8 b% X: ?7 ?: i5 A
4 _1 y- x* r( {9 z9 |* k* }TCP 80 (www)
0 C5 V1 l$ ?1 i7 P* }& WCustomers running a Web server will no longer be able to have Internet users connect to their server. Common exploit on old Window IIS server and Linux boxes that are not properly patched.4 c- y3 u/ o: s5 s
}: X6 m+ u, R, e+ x; xTCP 110 (pop3)0 k9 c2 q0 m/ h& S
Customers running a POP mail server will no longer be able to have Internet users connect to the server. Prevent mail servers that operate as an open relay. Open relays are used without a customer?s knowledge to sends millions of pieces of Spam.
( s( ]7 F9 F G2 i8 E- M( V8 B2 g7 k: P7 b) `
TCP 6667 (ircd)
) \: ^: p2 Y4 C, QCustomers running a IRC server (Internet Relay Chat) will no longer be able to have Internet users connect to the server.5 f. k- n1 u5 T9 A+ [: e
& c j2 o# o) g8 U
TCP/UDP 135-139 (dcom and netbios)7 x' y! _3 K/ s. V- j/ x
These ports are commonly exploited by worm viruses:- [0 ~8 a, Z" U4 J
135 Windows RPC4 m) X8 g* M. R5 K# i4 Q, M
136 PROFILE Naming System (basically unused)* Z' X5 v o( A
137-139 Windows NetBios
( ~ {2 M( M0 @: m5 ?# o% `6 {( o7 i8 U. p
TCP/UDP 445 (ms-ds)
/ x3 S4 |; c7 t* o2 `/ ~2 K5 x4 zMicrosoft Directory Services - Customers that allow legitimate Internet users access to their computers will loose this ability. This allows hackers to directly connect to a Windows based computer and gain total control over the OS.' b% z" k6 O( l$ s3 K" c
4 b, t3 g6 w1 g7 D9 E7 V
TCP/UDP 1433-1434 (ms-sql)
7 _" n ~6 _9 F) S& [+ P V4 e* uMicrosoft SQL server - Customer running an SQL server will no long be able to have Internet user connect to their server. There are several worm viruses that exploit holes in SQL server. |
|