 鲜花( 87)  鸡蛋( 1)
|
之前发过一个帖子有关Telus, Shaw 的比较, ( E# [. J) m+ ^- C
家用Telus 已经封锁了不少端口。 也随时不通知下说锁就锁, 非常讨厌。$ ?7 u) w( ]( U5 I/ z7 r" [1 H
" c |/ K' K. J% ~Does Telus block any ports?
# [* V/ {4 M. D9 c" q5 Z9 N5 ?( D4 M( V8 d) F+ E
The only packages with no blocked ports at this time are the Server packages. ! o6 I$ s7 l5 ?$ |- b! v' e
2 O; g0 U/ c/ M, v
The Blocked ports currently are:! ?1 C9 @6 }! u3 d8 F3 `
5 @3 L# [; G" {: O
TCP 21 (ftp)
/ B) k6 G+ G1 B. aCustomers running an FTP server will no longer be able to have Internet users connect to their server. Many customers computers are used as FTP servers to store illegal files.
1 p p8 K2 k2 \3 i& [( k5 V5 r% G. u# S1 j/ ?# k
TCP 25 (smtp)
& r4 Z! t d& P1 G. p2 G1 TCustomers running a SMTP mail server will no longer be able to receive email requests. Also, Telus users will not be able to connect to non-Telus smtp servers on port 25. Prevent mail servers that operate as an open relay. Open relays are used without a customer?s knowledge to sends millions of pieces of Spam.1 f( c+ Z4 C' Y# ]* z
% Y$ E2 K. v8 {- z, j X3 k
TCP 80 (www)
" W& V' V. a9 }$ m5 j8 p2 kCustomers running a Web server will no longer be able to have Internet users connect to their server. Common exploit on old Window IIS server and Linux boxes that are not properly patched.
! _# Z3 u7 y9 k& ~: |* j' V! s7 q+ V. r) f; M
TCP 110 (pop3). [& Z3 a" T h" d
Customers running a POP mail server will no longer be able to have Internet users connect to the server. Prevent mail servers that operate as an open relay. Open relays are used without a customer?s knowledge to sends millions of pieces of Spam., n, E. M$ O' T. g# |* n* W
, l' c @% G' O5 I, Z
TCP 6667 (ircd)
. X: y! _+ Q& j! x) hCustomers running a IRC server (Internet Relay Chat) will no longer be able to have Internet users connect to the server.3 M3 a; \" u" W- {) ^
5 f3 F6 S# q1 \1 S( Z9 ?TCP/UDP 135-139 (dcom and netbios)- j4 B+ i- [5 X* C; g, N
These ports are commonly exploited by worm viruses:# X$ W" T2 l4 V% k4 x! ] Y
135 Windows RPC" `2 N' X$ ? A0 |
136 PROFILE Naming System (basically unused)
% S8 t! E' |0 f9 U2 u7 a4 ? y137-139 Windows NetBios! C" \: p% m8 c) l7 m- i2 N
. t" F K& j1 F7 R0 J1 D
TCP/UDP 445 (ms-ds)+ n( m" `2 }) F' t, @& L
Microsoft Directory Services - Customers that allow legitimate Internet users access to their computers will loose this ability. This allows hackers to directly connect to a Windows based computer and gain total control over the OS.0 @ X- i, P3 t, \
! m) o2 N+ I* _9 J; k7 ^
TCP/UDP 1433-1434 (ms-sql)7 x- Y% O3 T: h" j s% l' S2 o4 H
Microsoft SQL server - Customer running an SQL server will no long be able to have Internet user connect to their server. There are several worm viruses that exploit holes in SQL server. |
|