 鲜花( 87)  鸡蛋( 1)
|
之前发过一个帖子有关Telus, Shaw 的比较, " X' K8 Q& Q# q3 f' X% w/ F
家用Telus 已经封锁了不少端口。 也随时不通知下说锁就锁, 非常讨厌。0 A6 B" Z+ Q2 V, t) t4 v
% \$ a- S, D* A' ~) w5 FDoes Telus block any ports?
A: G) x0 b6 M( Y
2 m+ b' e N E7 e# r1 LThe only packages with no blocked ports at this time are the Server packages.
/ G9 Q% ]% ^7 a' N
' e& L) C6 H; T7 }The Blocked ports currently are:8 Y. z& Z3 v b E
, s' Z/ p3 A- b1 x5 J0 K
TCP 21 (ftp)
$ X$ X Q8 M/ i2 b9 Y; QCustomers running an FTP server will no longer be able to have Internet users connect to their server. Many customers computers are used as FTP servers to store illegal files.9 I% ?# n, m9 I: b# k3 F( _
2 q+ `# c+ Z6 _+ g+ OTCP 25 (smtp)$ V' j1 f2 t8 w
Customers running a SMTP mail server will no longer be able to receive email requests. Also, Telus users will not be able to connect to non-Telus smtp servers on port 25. Prevent mail servers that operate as an open relay. Open relays are used without a customer?s knowledge to sends millions of pieces of Spam.: X% H, x, I, h1 X% c/ e! y: z2 k0 U
& s5 X9 U* s0 nTCP 80 (www). Z c9 Q3 y6 c; S
Customers running a Web server will no longer be able to have Internet users connect to their server. Common exploit on old Window IIS server and Linux boxes that are not properly patched.& K+ ]! l) y, s* W2 i( l
3 V; J2 U$ l' }% W& _
TCP 110 (pop3)
, e3 }, u6 M( k/ B% iCustomers running a POP mail server will no longer be able to have Internet users connect to the server. Prevent mail servers that operate as an open relay. Open relays are used without a customer?s knowledge to sends millions of pieces of Spam.
. q/ \1 x+ \+ P l& L1 G, P# v/ [% ~2 B) A
TCP 6667 (ircd)$ I, |: J. u$ g2 @( k, W- S5 I8 ^+ i
Customers running a IRC server (Internet Relay Chat) will no longer be able to have Internet users connect to the server." {5 S. ?' p: }. }# h+ n
* K) W& L9 t8 w7 T1 E8 z( `
TCP/UDP 135-139 (dcom and netbios)
6 o& j0 p! H# _% D8 F, CThese ports are commonly exploited by worm viruses:2 l. N2 Z7 ^0 F. t, r
135 Windows RPC8 {* l, V, ^; f5 X
136 PROFILE Naming System (basically unused)2 H; T1 r7 E. @9 W: W/ ~* s
137-139 Windows NetBios
- [5 A' ^' U' [8 F
Y; [2 Z" l+ I" y1 a( K5 QTCP/UDP 445 (ms-ds)* E. A) D/ T V0 {) b
Microsoft Directory Services - Customers that allow legitimate Internet users access to their computers will loose this ability. This allows hackers to directly connect to a Windows based computer and gain total control over the OS.
4 I' o! w1 w: u; I% l+ {7 r" o' v7 ^+ C/ Q# x8 E& K- f' B D
TCP/UDP 1433-1434 (ms-sql)
* J2 e9 L# y% X2 MMicrosoft SQL server - Customer running an SQL server will no long be able to have Internet user connect to their server. There are several worm viruses that exploit holes in SQL server. |
|