 鲜花( 87)  鸡蛋( 1)
|
之前发过一个帖子有关Telus, Shaw 的比较, 1 y* j: a4 T1 N! c
家用Telus 已经封锁了不少端口。 也随时不通知下说锁就锁, 非常讨厌。
. W5 y7 \* X4 K9 B* [& r, Y3 ]
2 P6 O/ V4 F k' Y" `% Q; \' m4 T0 uDoes Telus block any ports? * v' p8 M0 \6 B
$ H" @0 g5 `/ QThe only packages with no blocked ports at this time are the Server packages. ( J/ `) L& ?. G& L, w( l! J
! F6 I# w9 G7 z8 Q' I& ^# ~
The Blocked ports currently are:
4 b4 g' N1 a. ^& Z n4 l+ r/ i6 M% {6 p
TCP 21 (ftp)5 u. R) m! g9 Y
Customers running an FTP server will no longer be able to have Internet users connect to their server. Many customers computers are used as FTP servers to store illegal files.
& F3 O& G( J! r; I5 f7 m4 V, N
1 A, I% }) d+ O6 E& f9 W) MTCP 25 (smtp)
: r8 G" a9 D: xCustomers running a SMTP mail server will no longer be able to receive email requests. Also, Telus users will not be able to connect to non-Telus smtp servers on port 25. Prevent mail servers that operate as an open relay. Open relays are used without a customer?s knowledge to sends millions of pieces of Spam./ L' b5 e. K# g5 d
3 s8 I8 \* f' C0 q; c
TCP 80 (www) t) }0 P7 \; H0 e- p4 D& |& S
Customers running a Web server will no longer be able to have Internet users connect to their server. Common exploit on old Window IIS server and Linux boxes that are not properly patched.
4 O/ d+ T7 |) y1 N2 Y, ?+ n6 }$ r# [( J# \+ ?% I
TCP 110 (pop3)% }3 ?& n" f( R8 @! u# ? D2 T4 N
Customers running a POP mail server will no longer be able to have Internet users connect to the server. Prevent mail servers that operate as an open relay. Open relays are used without a customer?s knowledge to sends millions of pieces of Spam., C, m' n" z$ }8 ~* m! B
) o2 W8 ]" k/ D3 ^) X: Q: OTCP 6667 (ircd)* G1 s' ?6 X% w) }1 c
Customers running a IRC server (Internet Relay Chat) will no longer be able to have Internet users connect to the server.
& U3 e" T- k- U2 M' ?
- z4 G+ K. q6 GTCP/UDP 135-139 (dcom and netbios)* a, A+ z' D+ U1 n$ m0 O
These ports are commonly exploited by worm viruses:5 f. {& n( U# Y% g
135 Windows RPC2 r R8 R; _8 I" W' @8 H0 o2 `# H
136 PROFILE Naming System (basically unused)
8 Y1 w% w2 l7 v/ n, w9 H137-139 Windows NetBios
" x) N$ J. f5 L$ Y4 c$ z6 h! C+ E. \8 d7 {& g+ a
TCP/UDP 445 (ms-ds); A$ H6 a* @5 ]' ?6 N B7 N
Microsoft Directory Services - Customers that allow legitimate Internet users access to their computers will loose this ability. This allows hackers to directly connect to a Windows based computer and gain total control over the OS.: m6 M* H1 l/ s$ V) |; e: m
' n9 C8 r# i& T8 @& i) BTCP/UDP 1433-1434 (ms-sql)
3 h4 r, [+ v5 u/ w* e" x, Y# RMicrosoft SQL server - Customer running an SQL server will no long be able to have Internet user connect to their server. There are several worm viruses that exploit holes in SQL server. |
|