 鲜花( 87)  鸡蛋( 1)
|
之前发过一个帖子有关Telus, Shaw 的比较,
9 `$ \5 T# I7 n7 u! j家用Telus 已经封锁了不少端口。 也随时不通知下说锁就锁, 非常讨厌。
4 ^1 y( F7 m" Q% j4 m
5 p \2 x' e1 h, @8 q H" S% gDoes Telus block any ports? & x; f+ v1 i( P. q6 P
: V# F0 Y, F! ` `/ e. J& aThe only packages with no blocked ports at this time are the Server packages.
9 C- E- I/ O8 V. [: I0 x5 t2 `- [* I& }# T% y
The Blocked ports currently are:
s4 n# [" m: p. h2 S
+ d& I3 K6 n& F% pTCP 21 (ftp)% A, ]5 u2 ^# D* m* w' s& m( M* U
Customers running an FTP server will no longer be able to have Internet users connect to their server. Many customers computers are used as FTP servers to store illegal files.
4 O% |7 Y# s' }1 J( p
R1 K, N3 b! g/ x aTCP 25 (smtp)
# E+ N/ ?/ L/ F( i9 I6 [ pCustomers running a SMTP mail server will no longer be able to receive email requests. Also, Telus users will not be able to connect to non-Telus smtp servers on port 25. Prevent mail servers that operate as an open relay. Open relays are used without a customer?s knowledge to sends millions of pieces of Spam.
: \, F$ h* i, b5 o& v$ m
8 N) j o- P2 F& b( i6 JTCP 80 (www)% Q3 j* s3 [) J3 W' N
Customers running a Web server will no longer be able to have Internet users connect to their server. Common exploit on old Window IIS server and Linux boxes that are not properly patched.
8 j# Y( l) w1 A- R( m& f+ J# K Z! ? n8 w
TCP 110 (pop3). Z( b% S# z; E( C7 @
Customers running a POP mail server will no longer be able to have Internet users connect to the server. Prevent mail servers that operate as an open relay. Open relays are used without a customer?s knowledge to sends millions of pieces of Spam.
- C- }/ \0 W, s! {5 P1 x2 C8 U7 F7 `! i3 T |# B" ^0 A
TCP 6667 (ircd)
( B, ?/ u% ^- z5 L. m% [Customers running a IRC server (Internet Relay Chat) will no longer be able to have Internet users connect to the server.- w% |& @* c5 \5 I7 }4 p
+ P9 q2 g, E9 o+ y5 |
TCP/UDP 135-139 (dcom and netbios)
) p& [5 ~' I' HThese ports are commonly exploited by worm viruses:
8 S+ x% z9 u! v! k6 o135 Windows RPC1 _6 I. f# U/ W
136 PROFILE Naming System (basically unused); P3 B9 g2 T* Y* ^1 |0 `$ I
137-139 Windows NetBios
h# r" H7 F% i2 f: s: L, z. A- @! I. l6 f5 B' |
TCP/UDP 445 (ms-ds)
( ^# A( T) P: Z1 |Microsoft Directory Services - Customers that allow legitimate Internet users access to their computers will loose this ability. This allows hackers to directly connect to a Windows based computer and gain total control over the OS.
' t/ H; b) S. P# l, a) S0 P0 w$ G# p
TCP/UDP 1433-1434 (ms-sql)! T8 a: i% x b& F8 N3 G* O
Microsoft SQL server - Customer running an SQL server will no long be able to have Internet user connect to their server. There are several worm viruses that exploit holes in SQL server. |
|