 鲜花( 87)  鸡蛋( 1)
|
之前发过一个帖子有关Telus, Shaw 的比较,
/ n' h% Z' q5 }' I* p家用Telus 已经封锁了不少端口。 也随时不通知下说锁就锁, 非常讨厌。
9 e5 r! R' \% l+ |! V; U* z) w& R/ q, T7 o$ x/ D- k
Does Telus block any ports?
1 H1 O& ]2 {, X7 z% n
$ ~5 ]. r/ M2 g3 E- C- v. XThe only packages with no blocked ports at this time are the Server packages.
6 N" b% m4 ~6 X
* ?8 u& @1 l! n+ i; Z" P! LThe Blocked ports currently are:
+ a( W& u7 P @" ^8 M) ~) H4 F! `
TCP 21 (ftp)
9 x. t: `9 W& hCustomers running an FTP server will no longer be able to have Internet users connect to their server. Many customers computers are used as FTP servers to store illegal files.
& N& \8 G4 i: S6 |. p0 V
* p3 E7 a f) K$ {1 ~! _TCP 25 (smtp)
6 ]8 T% d( E& e' ACustomers running a SMTP mail server will no longer be able to receive email requests. Also, Telus users will not be able to connect to non-Telus smtp servers on port 25. Prevent mail servers that operate as an open relay. Open relays are used without a customer?s knowledge to sends millions of pieces of Spam.
$ C g7 C" r- u! p9 k6 c4 Z: H7 s; [7 q, s# Y
TCP 80 (www), O% h. e; q" U+ ^) b5 o( a
Customers running a Web server will no longer be able to have Internet users connect to their server. Common exploit on old Window IIS server and Linux boxes that are not properly patched.
; ]& s- `" R6 X9 d( P( S( ~3 P, T/ }/ ]. x
TCP 110 (pop3)! a' I, D/ c% o: r! F3 ?
Customers running a POP mail server will no longer be able to have Internet users connect to the server. Prevent mail servers that operate as an open relay. Open relays are used without a customer?s knowledge to sends millions of pieces of Spam.$ c6 g, u9 D! S5 e/ B0 P
) V$ e& t, m4 p) U; x8 s* S
TCP 6667 (ircd). u+ a: U* q! K+ R3 E
Customers running a IRC server (Internet Relay Chat) will no longer be able to have Internet users connect to the server./ r9 t" @, [% g
. e2 I# x% M3 x ETCP/UDP 135-139 (dcom and netbios)3 g; H# ~$ ?! e6 k
These ports are commonly exploited by worm viruses:
, W0 {; T" |: j1 y0 p: ]% W. h135 Windows RPC
, P2 N% `: m. {- D4 }0 m" \! f5 P136 PROFILE Naming System (basically unused)
, _% f2 |% L" k137-139 Windows NetBios
" Z# }# v% g2 K4 r3 [& X! n l- A. ]1 d' b& U& o* M. r' O4 R" K! M) b) n
TCP/UDP 445 (ms-ds)% v& o$ L, C, x6 l: M
Microsoft Directory Services - Customers that allow legitimate Internet users access to their computers will loose this ability. This allows hackers to directly connect to a Windows based computer and gain total control over the OS.$ q& p' h' B* k; ^9 o
9 Z o4 h3 M7 K1 z. L) w/ v3 ATCP/UDP 1433-1434 (ms-sql)" i% V E9 U, ~1 T
Microsoft SQL server - Customer running an SQL server will no long be able to have Internet user connect to their server. There are several worm viruses that exploit holes in SQL server. |
|