 鲜花( 87)  鸡蛋( 1)
|
之前发过一个帖子有关Telus, Shaw 的比较, ' b( d/ w: j2 R* i4 A4 s" F6 J
家用Telus 已经封锁了不少端口。 也随时不通知下说锁就锁, 非常讨厌。
8 G$ K8 D# U6 D% L1 b& s. |+ Z, L
. U# |) A' F0 T+ G6 kDoes Telus block any ports?
' {: [) ]5 }/ l9 M- s% Z
- `- Q2 [% |8 k% L* @2 r! s0 h/ a5 nThe only packages with no blocked ports at this time are the Server packages. 7 x0 O2 x$ ?$ `% X5 J/ |
- ? h+ ]8 `( m ^The Blocked ports currently are:
( x7 o, T& o1 p( m' t
3 `2 X& i# [0 ATCP 21 (ftp)" |, D: ]1 @) a! h: s0 Q
Customers running an FTP server will no longer be able to have Internet users connect to their server. Many customers computers are used as FTP servers to store illegal files.* `# s' Z6 D! b8 m9 ?
r% {8 x; d* G( E7 X" S& ?& b5 sTCP 25 (smtp) ~3 D1 e& {/ I2 r7 M
Customers running a SMTP mail server will no longer be able to receive email requests. Also, Telus users will not be able to connect to non-Telus smtp servers on port 25. Prevent mail servers that operate as an open relay. Open relays are used without a customer?s knowledge to sends millions of pieces of Spam." B7 d9 P3 {3 z! A
0 F$ | Z6 a6 f% N. o0 [, e
TCP 80 (www)7 P% n0 S9 W! |/ O2 ]$ X
Customers running a Web server will no longer be able to have Internet users connect to their server. Common exploit on old Window IIS server and Linux boxes that are not properly patched.* e4 `4 Z& d0 `- F8 ^: o
5 E6 I: e; Z1 `TCP 110 (pop3)& v q" X" h: _9 E) M
Customers running a POP mail server will no longer be able to have Internet users connect to the server. Prevent mail servers that operate as an open relay. Open relays are used without a customer?s knowledge to sends millions of pieces of Spam.
2 K C* O6 T4 X& @+ u. A5 L8 F
TCP 6667 (ircd)+ x! ~6 Y- r% F2 k2 ~
Customers running a IRC server (Internet Relay Chat) will no longer be able to have Internet users connect to the server.3 o0 B( r: u& @7 ?
5 L9 j0 [& E4 x* ?9 N! k$ W+ Q5 gTCP/UDP 135-139 (dcom and netbios), _4 S" ]: H: j, `
These ports are commonly exploited by worm viruses:
; h2 g4 P# _% ?& ^135 Windows RPC& P/ J3 T3 m' R9 ^7 n. i7 j( w5 q Q
136 PROFILE Naming System (basically unused)
8 @! Z. ^0 Y) w' c5 u5 I1 W137-139 Windows NetBios
; p9 ?' a2 R1 n2 y; n
2 K) x/ y/ i: a+ P Y( S& dTCP/UDP 445 (ms-ds)
6 b0 ^) E! d1 M1 b' ?3 ZMicrosoft Directory Services - Customers that allow legitimate Internet users access to their computers will loose this ability. This allows hackers to directly connect to a Windows based computer and gain total control over the OS.
6 Z" f' f; G2 s7 X: Y$ u- N# I. E: t7 B1 |& ~ x$ {2 z
TCP/UDP 1433-1434 (ms-sql)2 ?2 L3 F9 V. p
Microsoft SQL server - Customer running an SQL server will no long be able to have Internet user connect to their server. There are several worm viruses that exploit holes in SQL server. |
|