 鲜花( 87)  鸡蛋( 1)
|
之前发过一个帖子有关Telus, Shaw 的比较, # Q7 V( R# `6 P7 a) s# a6 z9 `# p( N* Q
家用Telus 已经封锁了不少端口。 也随时不通知下说锁就锁, 非常讨厌。
1 n1 _2 X( t; K/ q* a. B# U' x
+ g# \$ `( ^$ x Q& Z! XDoes Telus block any ports?
2 ^9 o; i( ` b# b5 v
0 S* { z, z2 S2 D7 u- b: QThe only packages with no blocked ports at this time are the Server packages.
7 y/ ~' `7 X$ L
, k. f3 ^- m. V4 a6 ?/ hThe Blocked ports currently are:
: l: G* Q0 G- G( _
* b% q8 `4 M3 v% R8 ]3 n' ?TCP 21 (ftp)
8 u: c5 X9 y( H4 RCustomers running an FTP server will no longer be able to have Internet users connect to their server. Many customers computers are used as FTP servers to store illegal files.
: x: |! C/ E! V, X! \- {& z. c1 ^. m3 H! J
TCP 25 (smtp)
& @& B/ j+ |1 r% gCustomers running a SMTP mail server will no longer be able to receive email requests. Also, Telus users will not be able to connect to non-Telus smtp servers on port 25. Prevent mail servers that operate as an open relay. Open relays are used without a customer?s knowledge to sends millions of pieces of Spam.
- I X3 \8 X5 `) Z5 }9 ]$ v3 w2 G( K
3 ] H- v8 H8 _% X: L2 _0 GTCP 80 (www)0 ], X9 Z2 t/ t/ {
Customers running a Web server will no longer be able to have Internet users connect to their server. Common exploit on old Window IIS server and Linux boxes that are not properly patched.
: g+ |# B. N- Y7 I
. U5 e2 C3 l( r. HTCP 110 (pop3)& n2 Y8 O2 {" S/ I7 O; U
Customers running a POP mail server will no longer be able to have Internet users connect to the server. Prevent mail servers that operate as an open relay. Open relays are used without a customer?s knowledge to sends millions of pieces of Spam.
( U8 o% A( c7 k. l
0 G* _0 N. M; H* z& M, gTCP 6667 (ircd)
* r9 [0 f: l) V, L1 z1 w' \/ iCustomers running a IRC server (Internet Relay Chat) will no longer be able to have Internet users connect to the server.* E- S* ?- W' w: G1 Y
4 m( D5 d P! B: u) LTCP/UDP 135-139 (dcom and netbios) }! q9 b, n ]- K) Q# {
These ports are commonly exploited by worm viruses:; |* D7 ?& D4 _$ g, v
135 Windows RPC
0 Q$ c; `9 m3 Q' ?4 C136 PROFILE Naming System (basically unused)
. ]7 N& M& w7 ^0 x4 v137-139 Windows NetBios3 N4 ]4 z1 `/ a$ R' j9 `
& m2 y% ]1 f. }+ x7 _4 a1 vTCP/UDP 445 (ms-ds)) U8 A% j3 Z$ y: y. m* Y% z/ J
Microsoft Directory Services - Customers that allow legitimate Internet users access to their computers will loose this ability. This allows hackers to directly connect to a Windows based computer and gain total control over the OS.
8 Q/ M+ m2 A5 y" h: I6 B0 U4 t! S! b5 r9 t. a, D
TCP/UDP 1433-1434 (ms-sql) h2 a( T, N, h" t
Microsoft SQL server - Customer running an SQL server will no long be able to have Internet user connect to their server. There are several worm viruses that exploit holes in SQL server. |
|