 鲜花( 87)  鸡蛋( 1)
|
之前发过一个帖子有关Telus, Shaw 的比较, ' p: v& k2 P" R& O5 Y# b
家用Telus 已经封锁了不少端口。 也随时不通知下说锁就锁, 非常讨厌。
1 _ W" F- z) Y5 \
5 @2 |; H8 K/ E4 h9 v+ q5 pDoes Telus block any ports?
) H9 v. ~; G, E e/ X0 K; X" k2 x+ f+ y" X% B5 y% Q
The only packages with no blocked ports at this time are the Server packages. 3 |! B! C; X% g) v. }8 p
; e# ^4 D' G+ N GThe Blocked ports currently are:# R2 {+ l( K8 m/ D( U* f
$ i1 D7 x; r: O3 L
TCP 21 (ftp)
) n& p. I3 y5 x' o# W) tCustomers running an FTP server will no longer be able to have Internet users connect to their server. Many customers computers are used as FTP servers to store illegal files.8 \% h \. q" D3 a( S ]$ N4 ^
& Y+ T, _' }+ sTCP 25 (smtp)5 ]% L2 q: T2 l
Customers running a SMTP mail server will no longer be able to receive email requests. Also, Telus users will not be able to connect to non-Telus smtp servers on port 25. Prevent mail servers that operate as an open relay. Open relays are used without a customer?s knowledge to sends millions of pieces of Spam.9 L) |$ F; y- r& w( G8 ]3 J9 r @) C
- ~4 |5 h! |3 ]3 H
TCP 80 (www)
4 Q7 s% z) e( Q: S7 ^3 E, Z0 VCustomers running a Web server will no longer be able to have Internet users connect to their server. Common exploit on old Window IIS server and Linux boxes that are not properly patched./ b2 ]. {* |( s; {- J; u# n
4 v( N0 |- C4 ~/ K& U" `
TCP 110 (pop3); m, s ~ q' J! ^# L! y" W
Customers running a POP mail server will no longer be able to have Internet users connect to the server. Prevent mail servers that operate as an open relay. Open relays are used without a customer?s knowledge to sends millions of pieces of Spam.
' A& T$ z$ b0 @0 f$ ^$ a) Q& { b# B4 p: ^2 R
TCP 6667 (ircd)
7 O9 e0 J0 l- X* G, n* X! L: T5 m7 bCustomers running a IRC server (Internet Relay Chat) will no longer be able to have Internet users connect to the server.
& S' d; O9 ]. T7 Y" [* D/ E: r4 o% ^+ d
TCP/UDP 135-139 (dcom and netbios)
; D! a8 @; N1 [3 yThese ports are commonly exploited by worm viruses:* e" [9 q5 Z6 ?- d0 a) G
135 Windows RPC
5 ~0 Q3 v9 H! ?/ g, Y( e5 j136 PROFILE Naming System (basically unused)# x& v; G. c6 R( ]1 ]
137-139 Windows NetBios
- s* b8 `- ]% T' g% o
9 z+ g( S% t( o$ BTCP/UDP 445 (ms-ds)
/ Z" B1 \* |4 F$ g* x+ IMicrosoft Directory Services - Customers that allow legitimate Internet users access to their computers will loose this ability. This allows hackers to directly connect to a Windows based computer and gain total control over the OS.
/ r. w# B* Q; z0 x2 d2 A+ Y3 W
/ O: V2 L: Y) PTCP/UDP 1433-1434 (ms-sql)9 p2 B$ I- X! \( Q E9 k
Microsoft SQL server - Customer running an SQL server will no long be able to have Internet user connect to their server. There are several worm viruses that exploit holes in SQL server. |
|