 鲜花( 87)  鸡蛋( 1)
|
之前发过一个帖子有关Telus, Shaw 的比较, 3 s3 y! |8 a' X: |& Q! S- k
家用Telus 已经封锁了不少端口。 也随时不通知下说锁就锁, 非常讨厌。
: i! o/ Y5 G7 l5 E* k2 {4 j n* G, U, x
Does Telus block any ports? ! h5 _3 J: J: ?% f Y. L, e& z
/ [, b9 X' _, d# p: p* a, B
The only packages with no blocked ports at this time are the Server packages.
2 r5 d) {( t; _( P4 |8 n1 b$ c9 |, J% W- f6 Z
The Blocked ports currently are:) J5 t ]/ l2 i+ \1 w
$ ]8 K+ Q4 W% W- k' P; _; [TCP 21 (ftp)$ o) Y0 `; a+ P; k$ k; {( s% W
Customers running an FTP server will no longer be able to have Internet users connect to their server. Many customers computers are used as FTP servers to store illegal files.
, X9 ~7 ]! Z+ o# R9 ~: N1 x9 g! o* p& p' w
TCP 25 (smtp)
( {, j; @4 y# gCustomers running a SMTP mail server will no longer be able to receive email requests. Also, Telus users will not be able to connect to non-Telus smtp servers on port 25. Prevent mail servers that operate as an open relay. Open relays are used without a customer?s knowledge to sends millions of pieces of Spam.
- G7 ?. }- g5 |& m" ~, i* J' q6 m o' K4 Y) c5 v7 W' [
TCP 80 (www)
9 s5 e) @7 h4 eCustomers running a Web server will no longer be able to have Internet users connect to their server. Common exploit on old Window IIS server and Linux boxes that are not properly patched.9 q {- M( Y3 ]7 _# Z* E
- ]" x; w+ c/ M" x
TCP 110 (pop3)& f+ n9 `" E4 W" o
Customers running a POP mail server will no longer be able to have Internet users connect to the server. Prevent mail servers that operate as an open relay. Open relays are used without a customer?s knowledge to sends millions of pieces of Spam.
4 P( R- U$ S: Q
4 k' r3 l6 H0 xTCP 6667 (ircd)
0 w" M7 ?/ e" ]Customers running a IRC server (Internet Relay Chat) will no longer be able to have Internet users connect to the server.
2 r. E+ i$ y9 r0 @5 K1 X, O' c+ E7 f' ^# n: @. D1 p) S
TCP/UDP 135-139 (dcom and netbios)
- g% N: W+ ^& Q) O$ q7 {2 f) yThese ports are commonly exploited by worm viruses:
& C, x. K, b8 u6 |! v/ l0 a135 Windows RPC8 Y* v/ d" F/ m6 y
136 PROFILE Naming System (basically unused)
" n" j* |% s3 `0 P1 p: a0 q1 g137-139 Windows NetBios+ `+ M. t: k; g4 i( c2 S
. B3 }1 p$ L' A" ~
TCP/UDP 445 (ms-ds), G" }* d( Y+ H! ]: z
Microsoft Directory Services - Customers that allow legitimate Internet users access to their computers will loose this ability. This allows hackers to directly connect to a Windows based computer and gain total control over the OS.
X; }; t1 j+ V2 P7 Z7 w4 ~8 B9 E3 R# e( C" T) P3 C
TCP/UDP 1433-1434 (ms-sql)
9 H: E7 r8 E, ]- |Microsoft SQL server - Customer running an SQL server will no long be able to have Internet user connect to their server. There are several worm viruses that exploit holes in SQL server. |
|