 鲜花( 87)  鸡蛋( 1)
|
之前发过一个帖子有关Telus, Shaw 的比较, ' O6 R5 v! u% D
家用Telus 已经封锁了不少端口。 也随时不通知下说锁就锁, 非常讨厌。1 }/ W$ N, A2 V5 f! R! t
* j3 ^2 P! e' K1 P1 gDoes Telus block any ports?
7 Y9 W+ c1 p6 V, G# [
: q" }: T8 Y3 u# k" S) rThe only packages with no blocked ports at this time are the Server packages.
( X# ^3 H4 S% I/ N3 o) U$ B
2 f J0 I Q: k+ K# \' ?The Blocked ports currently are:3 L" K# Y# e' x/ v$ H9 z: [
- \) J7 X2 x$ S) R' _" d
TCP 21 (ftp)* W3 k' p @8 y
Customers running an FTP server will no longer be able to have Internet users connect to their server. Many customers computers are used as FTP servers to store illegal files.+ V1 A# I5 y0 e( w1 x
. b J5 b2 K$ Q% [0 j
TCP 25 (smtp)
% x! n p; z5 k9 y, b0 ~- [Customers running a SMTP mail server will no longer be able to receive email requests. Also, Telus users will not be able to connect to non-Telus smtp servers on port 25. Prevent mail servers that operate as an open relay. Open relays are used without a customer?s knowledge to sends millions of pieces of Spam.
. M0 T/ i: ^; m2 \6 H
4 I& C3 O* B; d) @% OTCP 80 (www)
& W. ]& O2 ?3 cCustomers running a Web server will no longer be able to have Internet users connect to their server. Common exploit on old Window IIS server and Linux boxes that are not properly patched.+ ], N/ n4 K! h8 ]7 P0 C
, {' K+ {' J' v9 ^1 y H' e
TCP 110 (pop3)
' S; _/ P, [% gCustomers running a POP mail server will no longer be able to have Internet users connect to the server. Prevent mail servers that operate as an open relay. Open relays are used without a customer?s knowledge to sends millions of pieces of Spam.
. B$ Y$ e3 {% g/ c' D! ^
3 u2 W" S Y: j6 l; b( K, ]TCP 6667 (ircd)
3 \3 p: X! p; Z+ Q3 @9 O+ Q* c! aCustomers running a IRC server (Internet Relay Chat) will no longer be able to have Internet users connect to the server.
. M$ Q9 H5 G8 [& E2 E" ^/ q0 B4 M6 j6 x
TCP/UDP 135-139 (dcom and netbios)3 ^/ j$ A6 D% q
These ports are commonly exploited by worm viruses:
. a$ e J0 R7 g* w; A5 C( v8 H135 Windows RPC( N5 e( ~+ N4 ]& ?# P
136 PROFILE Naming System (basically unused)
) s5 X# Z# w6 n137-139 Windows NetBios
4 Z7 @* J6 i. T+ Y
# v7 q% G% ?$ J" H. \. _/ {3 VTCP/UDP 445 (ms-ds)
9 B# e" a, G# O# ]0 OMicrosoft Directory Services - Customers that allow legitimate Internet users access to their computers will loose this ability. This allows hackers to directly connect to a Windows based computer and gain total control over the OS.! q% o1 L9 Z2 q2 I
) A( v# q: C: s* a! d+ L$ C
TCP/UDP 1433-1434 (ms-sql)
8 I! U/ x8 F! S2 y- `) i' [9 gMicrosoft SQL server - Customer running an SQL server will no long be able to have Internet user connect to their server. There are several worm viruses that exploit holes in SQL server. |
|