 鲜花( 87)  鸡蛋( 1)
|
之前发过一个帖子有关Telus, Shaw 的比较,
Z+ O0 R4 P- O$ P; D: S家用Telus 已经封锁了不少端口。 也随时不通知下说锁就锁, 非常讨厌。
& J1 g3 a% y2 z5 q' R+ O
8 j% C- C% A9 }5 s' rDoes Telus block any ports? - e/ ^4 G/ S" v* u
8 ^1 E e7 I9 i r3 HThe only packages with no blocked ports at this time are the Server packages. 7 _) U8 t' {6 S) b5 [1 z
) d1 a$ D$ E4 T8 r. lThe Blocked ports currently are:
2 G7 A$ _$ ]2 |% _& r# Z8 B) y) z: o; O+ {
TCP 21 (ftp)
! D% \( f9 }# g" PCustomers running an FTP server will no longer be able to have Internet users connect to their server. Many customers computers are used as FTP servers to store illegal files.
; ]. S F1 d9 P6 ]5 i
6 L' @% P, ]0 `$ ^3 a* [4 \& n' oTCP 25 (smtp)
% t: \! j7 b) y* u0 ~! i1 }Customers running a SMTP mail server will no longer be able to receive email requests. Also, Telus users will not be able to connect to non-Telus smtp servers on port 25. Prevent mail servers that operate as an open relay. Open relays are used without a customer?s knowledge to sends millions of pieces of Spam.
3 _0 r5 I8 H" ]. {/ k: V% Y
& u R# X- c3 b5 T1 G |8 a# M; \TCP 80 (www)
* s& C2 x q, ^+ n8 C" ICustomers running a Web server will no longer be able to have Internet users connect to their server. Common exploit on old Window IIS server and Linux boxes that are not properly patched.0 h e- j- j0 w0 }* ^( `4 H! V
0 q, N& U( q! U A. @3 Z
TCP 110 (pop3)! [% g& c( J% m4 I( L
Customers running a POP mail server will no longer be able to have Internet users connect to the server. Prevent mail servers that operate as an open relay. Open relays are used without a customer?s knowledge to sends millions of pieces of Spam.
3 k6 q$ I3 z# D' q4 z
' \8 g$ N& m1 }; `" ~TCP 6667 (ircd)
8 J; Q0 @+ \$ x. nCustomers running a IRC server (Internet Relay Chat) will no longer be able to have Internet users connect to the server.. m( \: V* D( ^4 ]8 \" ^
2 c# e, W6 [6 d8 A! WTCP/UDP 135-139 (dcom and netbios). `$ C7 ?" n" i" L/ \' v9 p7 ^1 X
These ports are commonly exploited by worm viruses:3 k, |5 G& O0 k$ b3 ^- Z# P6 l+ E: m
135 Windows RPC0 l9 Y+ w/ v1 t
136 PROFILE Naming System (basically unused)
0 a5 n; U# ]8 p2 }/ I& b' i137-139 Windows NetBios! L; V! C/ a3 J
7 t7 s; ?5 {4 |/ j v8 B
TCP/UDP 445 (ms-ds)0 q+ N/ N0 Z: ^9 }2 d
Microsoft Directory Services - Customers that allow legitimate Internet users access to their computers will loose this ability. This allows hackers to directly connect to a Windows based computer and gain total control over the OS.
* r3 A/ D" w) e9 U- } ~
4 h3 V! N/ g6 a6 \" A) ]TCP/UDP 1433-1434 (ms-sql)9 p6 X( x; n. c" Y& w+ E
Microsoft SQL server - Customer running an SQL server will no long be able to have Internet user connect to their server. There are several worm viruses that exploit holes in SQL server. |
|