 鲜花( 87)  鸡蛋( 1)
|
之前发过一个帖子有关Telus, Shaw 的比较,
" @' a- \3 @# N$ h; c家用Telus 已经封锁了不少端口。 也随时不通知下说锁就锁, 非常讨厌。
! f2 D( ~. u8 |. A/ h, \/ g2 X6 Y( I5 t( ~
Does Telus block any ports?
' S; S( c) R+ M4 C* I
- B! e ~" p f" AThe only packages with no blocked ports at this time are the Server packages. ! O! G" u4 a; k4 L
n! z; q. @1 O: Q
The Blocked ports currently are:
- h1 @' n& }/ y3 w8 r6 V% j- d( Q2 c: p E0 Z. ?6 X
TCP 21 (ftp)
$ s. i- G; G, kCustomers running an FTP server will no longer be able to have Internet users connect to their server. Many customers computers are used as FTP servers to store illegal files.
, r! J* N% y5 F9 a& S
) W3 p. p$ {, n4 H# ~TCP 25 (smtp)
* ~) J& v8 p. W4 `9 ACustomers running a SMTP mail server will no longer be able to receive email requests. Also, Telus users will not be able to connect to non-Telus smtp servers on port 25. Prevent mail servers that operate as an open relay. Open relays are used without a customer?s knowledge to sends millions of pieces of Spam.* a m H2 v$ K* m/ N, C+ |
$ W% n) C: z! t1 G2 S7 F1 C4 jTCP 80 (www)
^2 v# I+ i) R* d8 ]) m$ H% `* ]Customers running a Web server will no longer be able to have Internet users connect to their server. Common exploit on old Window IIS server and Linux boxes that are not properly patched.
; D% c0 D) B* s6 p0 B% @
& w1 }1 H+ R5 Y" G5 i( M, oTCP 110 (pop3)& t+ J5 p, f5 X& f1 n$ z9 A
Customers running a POP mail server will no longer be able to have Internet users connect to the server. Prevent mail servers that operate as an open relay. Open relays are used without a customer?s knowledge to sends millions of pieces of Spam.5 A; ?1 H& S) _: m) N I# T+ N3 h
% a3 m' L( ^" s4 O3 f) v3 T2 B$ RTCP 6667 (ircd)4 d: y% X2 S6 n( M
Customers running a IRC server (Internet Relay Chat) will no longer be able to have Internet users connect to the server.
; W. W. o, J& J! N3 P$ X5 b! r6 X/ J5 N. b% Y' q: S
TCP/UDP 135-139 (dcom and netbios). X& N- M6 @! A$ @' W
These ports are commonly exploited by worm viruses:9 g1 t! |! W6 x+ @2 v4 z
135 Windows RPC4 u6 ~, s) S4 a) n8 J9 H
136 PROFILE Naming System (basically unused)
; S+ U! j; [5 T4 ~6 V5 t137-139 Windows NetBios
8 U% X- d6 @( z7 [- g
N9 X5 D& a2 {+ uTCP/UDP 445 (ms-ds)% u/ m9 \' A T7 \; ?) o
Microsoft Directory Services - Customers that allow legitimate Internet users access to their computers will loose this ability. This allows hackers to directly connect to a Windows based computer and gain total control over the OS.
: d; E7 i5 t# ]5 z
' Y0 n4 w- D! E) t# X }, b5 B: tTCP/UDP 1433-1434 (ms-sql)) B- F( S j g: ]: Q* B5 C( y) n
Microsoft SQL server - Customer running an SQL server will no long be able to have Internet user connect to their server. There are several worm viruses that exploit holes in SQL server. |
|