 鲜花( 87)  鸡蛋( 1)
|
之前发过一个帖子有关Telus, Shaw 的比较,
" {8 v8 e$ g8 i2 c家用Telus 已经封锁了不少端口。 也随时不通知下说锁就锁, 非常讨厌。: l$ M* p5 m* p5 i
7 s q) t; Q/ Q3 gDoes Telus block any ports?
. B8 S4 s1 i6 p6 Y% K Z; i
) o2 l, n/ s1 r$ TThe only packages with no blocked ports at this time are the Server packages. 7 ]9 O: W+ |- G; ~
+ k* e/ D: n/ w& i# j7 oThe Blocked ports currently are:: s$ p, p A Y8 K; C; e! @5 v
/ d1 V! J' m, B+ o* QTCP 21 (ftp)
y+ J$ N. k qCustomers running an FTP server will no longer be able to have Internet users connect to their server. Many customers computers are used as FTP servers to store illegal files.
7 L$ ?& D) {& ]. ~, p) {( `3 K9 m" N# x, B- I
TCP 25 (smtp)
m( Z$ x& T' A0 oCustomers running a SMTP mail server will no longer be able to receive email requests. Also, Telus users will not be able to connect to non-Telus smtp servers on port 25. Prevent mail servers that operate as an open relay. Open relays are used without a customer?s knowledge to sends millions of pieces of Spam.
& w2 I y K: j, h" I# L! y* V2 n# j! @4 a1 g% u+ j) V# K [
TCP 80 (www)
4 w) y3 o. h- J* k% xCustomers running a Web server will no longer be able to have Internet users connect to their server. Common exploit on old Window IIS server and Linux boxes that are not properly patched.
8 {# v6 A5 m/ D# G6 a/ y6 R9 b6 F) X, b3 _
TCP 110 (pop3)
. d, [* \2 N& E, {! qCustomers running a POP mail server will no longer be able to have Internet users connect to the server. Prevent mail servers that operate as an open relay. Open relays are used without a customer?s knowledge to sends millions of pieces of Spam.6 N$ W) i& o# |' A- W
# P; N9 S+ F$ s/ C4 A
TCP 6667 (ircd)
; b4 Y8 D6 ~6 A7 i' B' S& OCustomers running a IRC server (Internet Relay Chat) will no longer be able to have Internet users connect to the server.1 Q: O9 I5 E8 _- s/ R5 v$ J0 J" u
' j. {$ I4 J3 V- \TCP/UDP 135-139 (dcom and netbios)
* P) N$ ?1 v+ Y6 |, G4 E7 tThese ports are commonly exploited by worm viruses:
& j8 }- D3 P$ Q0 |, |. ~$ B+ b/ R135 Windows RPC" ?8 S( J; r7 W/ L1 l. T% {
136 PROFILE Naming System (basically unused)
" l* y5 S2 @; Q; T137-139 Windows NetBios3 h. w: X4 d5 P0 ]. u' K' S' C
- X L- C8 `+ `5 K, _# I( DTCP/UDP 445 (ms-ds)
2 t' b, G% N1 p5 k) S# I% SMicrosoft Directory Services - Customers that allow legitimate Internet users access to their computers will loose this ability. This allows hackers to directly connect to a Windows based computer and gain total control over the OS.9 F8 s$ {) f5 t" h
6 a9 e' ~5 _6 W# ^9 n; b% Q
TCP/UDP 1433-1434 (ms-sql)8 s5 J \9 a3 V/ `! V( N. |/ o
Microsoft SQL server - Customer running an SQL server will no long be able to have Internet user connect to their server. There are several worm viruses that exploit holes in SQL server. |
|