 鲜花( 87)  鸡蛋( 1)
|
之前发过一个帖子有关Telus, Shaw 的比较,
$ C/ i* B+ c* r家用Telus 已经封锁了不少端口。 也随时不通知下说锁就锁, 非常讨厌。8 G7 z6 V2 v1 m6 U; Q9 w& w, Y
% z- b, W W$ c# IDoes Telus block any ports?
; H% F) ~' o4 ?$ \
2 G4 Z/ y( ~8 w5 N- P' Q. KThe only packages with no blocked ports at this time are the Server packages.
4 B5 R7 x, u1 n8 h5 ^
8 r, [; {9 C% A$ p& UThe Blocked ports currently are:
# Z# L4 f/ q* A# z/ O) m6 w6 j2 ^
+ I4 y7 \4 U0 P& p _TCP 21 (ftp)
" r: P) @% s1 d8 w: [& m% NCustomers running an FTP server will no longer be able to have Internet users connect to their server. Many customers computers are used as FTP servers to store illegal files.5 V$ K9 P: U2 X; [! H' d( `; b5 ~
: ]5 Q4 X" S! x3 j
TCP 25 (smtp)
" x t) Z% |- E( g2 K6 HCustomers running a SMTP mail server will no longer be able to receive email requests. Also, Telus users will not be able to connect to non-Telus smtp servers on port 25. Prevent mail servers that operate as an open relay. Open relays are used without a customer?s knowledge to sends millions of pieces of Spam.8 }3 x- L. A( l j) s! l( x
( a' w9 W& R& |9 GTCP 80 (www)
# j# y. W7 a0 h- U% Y4 S- K. fCustomers running a Web server will no longer be able to have Internet users connect to their server. Common exploit on old Window IIS server and Linux boxes that are not properly patched.: H' o: |" d# V3 ^* S
; E; n5 C2 _% s3 S. aTCP 110 (pop3)
) P' r9 i' H4 ?Customers running a POP mail server will no longer be able to have Internet users connect to the server. Prevent mail servers that operate as an open relay. Open relays are used without a customer?s knowledge to sends millions of pieces of Spam.8 W1 S% }) i( Z+ R
" n- V; P( A) H7 \( r" F
TCP 6667 (ircd)6 ?/ e0 p0 @9 \/ C
Customers running a IRC server (Internet Relay Chat) will no longer be able to have Internet users connect to the server.9 B3 d; p% {# p) `, _7 x
& r1 }( h9 |7 ~ @
TCP/UDP 135-139 (dcom and netbios)% J( g; M% ~6 E( \/ Q. p M
These ports are commonly exploited by worm viruses:
* W# c0 ^1 [1 Y- R135 Windows RPC
6 L8 p& A+ k. w0 D% r136 PROFILE Naming System (basically unused)
5 y4 l$ C" H) x137-139 Windows NetBios
# x9 k- @$ o0 @0 R+ R
# u3 L9 Q) i ^2 @TCP/UDP 445 (ms-ds)
/ } P3 O. b$ v$ x4 S8 UMicrosoft Directory Services - Customers that allow legitimate Internet users access to their computers will loose this ability. This allows hackers to directly connect to a Windows based computer and gain total control over the OS." ~- }" t# P# l8 R* F( K8 B
8 M5 D' N7 M" u, j
TCP/UDP 1433-1434 (ms-sql)
3 U e5 r* y- {; U1 AMicrosoft SQL server - Customer running an SQL server will no long be able to have Internet user connect to their server. There are several worm viruses that exploit holes in SQL server. |
|