 鲜花( 87)  鸡蛋( 1)
|
之前发过一个帖子有关Telus, Shaw 的比较, 0 B4 a e. q9 x7 a! U' A8 Z) t! C/ I
家用Telus 已经封锁了不少端口。 也随时不通知下说锁就锁, 非常讨厌。
' Q9 Z+ b( \2 J, G& v3 _9 m, B- x" r. Z
Does Telus block any ports?
1 r" `6 Z. `& a' l% j+ y2 p: N6 C0 ~! @; J
The only packages with no blocked ports at this time are the Server packages.
& K9 E: E8 e1 L- P- p
E# N1 l" x, j/ }The Blocked ports currently are:9 Q0 {8 V& Y% c' U4 ^: T2 s: g
; p. Q2 a6 W9 j) K6 F# S8 A* ~TCP 21 (ftp)
7 ?; Y' S) H1 T6 r5 P( _+ KCustomers running an FTP server will no longer be able to have Internet users connect to their server. Many customers computers are used as FTP servers to store illegal files.$ M2 I" w; Y& O- J8 l
) B7 r/ y* U/ W7 D7 q
TCP 25 (smtp)
; y: H1 [7 j) v( KCustomers running a SMTP mail server will no longer be able to receive email requests. Also, Telus users will not be able to connect to non-Telus smtp servers on port 25. Prevent mail servers that operate as an open relay. Open relays are used without a customer?s knowledge to sends millions of pieces of Spam., C2 V. _) \* r
, Y7 _" D6 V" Y4 v* W
TCP 80 (www)
+ W; o" |# p. ICustomers running a Web server will no longer be able to have Internet users connect to their server. Common exploit on old Window IIS server and Linux boxes that are not properly patched.
- U9 ]7 ]% s3 N0 ~ r; X$ q9 {
+ W9 j7 S8 P( f" o$ X) STCP 110 (pop3)6 e3 W: J% I- p8 F. [- S, B
Customers running a POP mail server will no longer be able to have Internet users connect to the server. Prevent mail servers that operate as an open relay. Open relays are used without a customer?s knowledge to sends millions of pieces of Spam.
8 z/ a: Q7 N5 L! Q
+ O: e, ?2 `% w* OTCP 6667 (ircd)# O; |4 x1 B! V/ Z( d
Customers running a IRC server (Internet Relay Chat) will no longer be able to have Internet users connect to the server.
. M# C/ u4 h# z9 h% H$ `- L; r; I6 a, [* ?" o7 _! A
TCP/UDP 135-139 (dcom and netbios)
9 O, ~, Y" \7 }4 wThese ports are commonly exploited by worm viruses:3 A4 l: O8 Z" r6 T: W( t5 y! t
135 Windows RPC
: e+ {9 i; \* d! a! Z136 PROFILE Naming System (basically unused)
$ k* p1 n% a( R9 y& `137-139 Windows NetBios3 r! W/ A: C- w8 U
* K' p3 ~0 Z( TTCP/UDP 445 (ms-ds)5 Z4 {$ O2 r) q" c
Microsoft Directory Services - Customers that allow legitimate Internet users access to their computers will loose this ability. This allows hackers to directly connect to a Windows based computer and gain total control over the OS.4 a& T2 m+ R! p1 ?2 ]3 i
9 f- P/ T0 G4 k7 u8 ~/ ~ ETCP/UDP 1433-1434 (ms-sql)& m o/ S7 ]8 `, L. I/ c! s
Microsoft SQL server - Customer running an SQL server will no long be able to have Internet user connect to their server. There are several worm viruses that exploit holes in SQL server. |
|