 鲜花( 87)  鸡蛋( 1)
|
之前发过一个帖子有关Telus, Shaw 的比较, ' l0 y: ~4 k- o' V9 p9 S
家用Telus 已经封锁了不少端口。 也随时不通知下说锁就锁, 非常讨厌。
) a8 ?; f- g2 {3 Q, r
/ L' l* U5 x' W' G/ r0 z( eDoes Telus block any ports? 2 c: m0 V6 a4 y: \+ h$ M; s
& b% D8 G, H$ ~. X) F) e& x; S: d
The only packages with no blocked ports at this time are the Server packages. ]& A/ g5 W1 n" W+ i. [
" n, Q% G, q; h7 L4 y) I) jThe Blocked ports currently are:
0 C# b" ^- e$ V& ~, d1 q0 z6 t- T$ d. m# l8 `, o! i1 Z0 k
TCP 21 (ftp)3 w. h7 E2 P! g. Y [: }
Customers running an FTP server will no longer be able to have Internet users connect to their server. Many customers computers are used as FTP servers to store illegal files.; h Z. u- {9 f3 q
/ L$ {% n% Y% K4 zTCP 25 (smtp)
7 }. p- l& b* Q" A+ GCustomers running a SMTP mail server will no longer be able to receive email requests. Also, Telus users will not be able to connect to non-Telus smtp servers on port 25. Prevent mail servers that operate as an open relay. Open relays are used without a customer?s knowledge to sends millions of pieces of Spam.! v5 \! x$ u6 A7 J
! f6 y5 m1 n; wTCP 80 (www)
8 E7 ?' n: B) C9 Z% N; ~8 N; _Customers running a Web server will no longer be able to have Internet users connect to their server. Common exploit on old Window IIS server and Linux boxes that are not properly patched.
) [* H6 a9 E; B; c( i/ z* i: L3 S7 m7 O: Y/ w
TCP 110 (pop3)
1 ]9 c& @* |6 e9 X4 K# nCustomers running a POP mail server will no longer be able to have Internet users connect to the server. Prevent mail servers that operate as an open relay. Open relays are used without a customer?s knowledge to sends millions of pieces of Spam.# ]8 q% M) D3 p- d. K
6 H# d: L* _ s% K$ H e( E) W3 v
TCP 6667 (ircd)
9 Q7 L l1 } |/ m% O9 RCustomers running a IRC server (Internet Relay Chat) will no longer be able to have Internet users connect to the server.
* y {! z* L8 C) _! M4 ]9 T7 X5 W; B8 v9 F, A# W. I. Y
TCP/UDP 135-139 (dcom and netbios)
& K# `0 c- x2 u9 [# e) D1 J# V" DThese ports are commonly exploited by worm viruses:; T: @ ~) `3 z4 l% V' X: j
135 Windows RPC
4 I6 [$ ?6 t! h: U136 PROFILE Naming System (basically unused): c4 U! {3 p) w) ~' L8 q2 N
137-139 Windows NetBios& f* h& Z, w. r
0 c ~ R! y: a5 @/ V9 u* [TCP/UDP 445 (ms-ds)
0 Y; [' S* J+ I7 G9 X7 PMicrosoft Directory Services - Customers that allow legitimate Internet users access to their computers will loose this ability. This allows hackers to directly connect to a Windows based computer and gain total control over the OS.
9 K9 I: y; u' s8 u
+ O; y( B% t, I4 S- l( U5 A6 d1 yTCP/UDP 1433-1434 (ms-sql)
6 n. l- K( W4 R4 H( mMicrosoft SQL server - Customer running an SQL server will no long be able to have Internet user connect to their server. There are several worm viruses that exploit holes in SQL server. |
|