 鲜花( 87)  鸡蛋( 1)
|
之前发过一个帖子有关Telus, Shaw 的比较, * J# K! r* V4 \: q/ A! _
家用Telus 已经封锁了不少端口。 也随时不通知下说锁就锁, 非常讨厌。$ M: _. w2 n4 b+ A# K& c' v% N
# {: C( h r1 }; `7 }( QDoes Telus block any ports?
+ M, z; R! @5 Y7 O, _9 t, J
/ ^( Y! A# U+ ]7 ]5 \( ] \; M$ FThe only packages with no blocked ports at this time are the Server packages. , \9 G" W* @2 R. h1 n
1 A" t7 d* c& u0 L1 jThe Blocked ports currently are:' m! @+ M% S m/ t0 |4 v
5 N4 s5 X' K5 O7 i3 R% I2 w5 }TCP 21 (ftp)
% t' X2 p4 L% |% e0 e3 lCustomers running an FTP server will no longer be able to have Internet users connect to their server. Many customers computers are used as FTP servers to store illegal files.+ h: r' A% c' t+ s7 h1 J5 U
1 ~+ I7 [! s6 l4 ]: V' ~' r
TCP 25 (smtp)
% [0 _# ^( `8 _4 |8 s! JCustomers running a SMTP mail server will no longer be able to receive email requests. Also, Telus users will not be able to connect to non-Telus smtp servers on port 25. Prevent mail servers that operate as an open relay. Open relays are used without a customer?s knowledge to sends millions of pieces of Spam.: C& D4 l: g, l' R$ {# Q
( p6 {; B& B2 @1 CTCP 80 (www)
% ?5 q* U @, } [ S& hCustomers running a Web server will no longer be able to have Internet users connect to their server. Common exploit on old Window IIS server and Linux boxes that are not properly patched.
. q5 I- N8 Y/ H i0 j
1 @6 O# F0 `' W8 U/ lTCP 110 (pop3)- W' S9 n' \7 S) U. t4 a
Customers running a POP mail server will no longer be able to have Internet users connect to the server. Prevent mail servers that operate as an open relay. Open relays are used without a customer?s knowledge to sends millions of pieces of Spam., V# E4 N4 p& x3 X6 q. p
2 O7 Y3 y2 s' J, `TCP 6667 (ircd)1 i" Y4 {* W* e3 {
Customers running a IRC server (Internet Relay Chat) will no longer be able to have Internet users connect to the server.) q$ D0 V- B0 j R; _' r# s% L
" F8 z- L: t" u4 t9 `- L9 ?
TCP/UDP 135-139 (dcom and netbios)8 o' ?5 X8 z: c0 @: H
These ports are commonly exploited by worm viruses:4 N7 b9 Y- y1 c4 {. W
135 Windows RPC; s& q H: M& ]: w3 ?6 ~4 J/ D
136 PROFILE Naming System (basically unused)
" i$ K; y4 O. D( M* b3 T6 H% c137-139 Windows NetBios
3 X5 L( P- m' t( W# y
5 B: R T+ ?; U8 @1 F" \- {TCP/UDP 445 (ms-ds). o0 a# ~* D0 P
Microsoft Directory Services - Customers that allow legitimate Internet users access to their computers will loose this ability. This allows hackers to directly connect to a Windows based computer and gain total control over the OS.$ a* m, B9 N/ b g; F
/ @$ r1 X$ ? l% \6 w5 D0 uTCP/UDP 1433-1434 (ms-sql)6 a3 A _8 R+ q
Microsoft SQL server - Customer running an SQL server will no long be able to have Internet user connect to their server. There are several worm viruses that exploit holes in SQL server. |
|