 鲜花( 87)  鸡蛋( 1)
|
之前发过一个帖子有关Telus, Shaw 的比较,
) f6 d2 ^2 C5 b' c9 p' H/ k7 N家用Telus 已经封锁了不少端口。 也随时不通知下说锁就锁, 非常讨厌。
7 M, i- |7 l c# ? Q2 n! d
6 p% n# p# U* LDoes Telus block any ports? ( X' S; J: m ]7 X6 S
2 ?( r4 v3 m' _1 p
The only packages with no blocked ports at this time are the Server packages. ( ]- E3 P- l5 I K- T
6 K# [( e( `* o& Y" p" j
The Blocked ports currently are:2 C4 Z. M9 C4 O- A
7 z0 ~* r' y4 \9 z b* K* Q( [
TCP 21 (ftp)7 b* K9 q8 m2 g! t! b# e D% K
Customers running an FTP server will no longer be able to have Internet users connect to their server. Many customers computers are used as FTP servers to store illegal files.
" ~- s. `/ f) y" L1 L; m8 \$ g$ a( b9 I5 u
TCP 25 (smtp)
! S( C1 v6 @ D8 ~& D% V) |1 aCustomers running a SMTP mail server will no longer be able to receive email requests. Also, Telus users will not be able to connect to non-Telus smtp servers on port 25. Prevent mail servers that operate as an open relay. Open relays are used without a customer?s knowledge to sends millions of pieces of Spam.& c' T/ K% K. ~
* e3 K/ p- E: Q! V0 eTCP 80 (www)' u1 }- O0 q+ f; I3 R' _
Customers running a Web server will no longer be able to have Internet users connect to their server. Common exploit on old Window IIS server and Linux boxes that are not properly patched.
0 z# ?+ y! y' L, i3 m+ L. g& O5 }" z: U% v6 S" m
TCP 110 (pop3)
! ]: Z; X2 J# Y; V% n# rCustomers running a POP mail server will no longer be able to have Internet users connect to the server. Prevent mail servers that operate as an open relay. Open relays are used without a customer?s knowledge to sends millions of pieces of Spam.
$ P. p4 W) s. X% A' M5 f" s
M# }6 D) G7 Z, zTCP 6667 (ircd)$ ~8 g( K: c* ^! s' W
Customers running a IRC server (Internet Relay Chat) will no longer be able to have Internet users connect to the server.
( c# d+ b' I. C7 W. Z: o3 T* ]0 H y
TCP/UDP 135-139 (dcom and netbios)
; ~+ e" N$ g6 X- p6 H1 ]+ tThese ports are commonly exploited by worm viruses:2 Q: n \* s0 [
135 Windows RPC* `. r; c: d0 x& n9 g
136 PROFILE Naming System (basically unused)1 A. i; O3 l/ B) g( |
137-139 Windows NetBios1 h$ Y, a8 m+ \- q* L* ~
( Y' G3 K7 [1 A! V# W# sTCP/UDP 445 (ms-ds)( `, V+ h; V5 p+ P, H
Microsoft Directory Services - Customers that allow legitimate Internet users access to their computers will loose this ability. This allows hackers to directly connect to a Windows based computer and gain total control over the OS.
. D* Y9 d- ]0 L& v. {* @' b# P' ~# r4 d. |
TCP/UDP 1433-1434 (ms-sql)
0 A3 `" Q/ V: z4 jMicrosoft SQL server - Customer running an SQL server will no long be able to have Internet user connect to their server. There are several worm viruses that exploit holes in SQL server. |
|