 鲜花( 87)  鸡蛋( 1)
|
之前发过一个帖子有关Telus, Shaw 的比较, ; K# r1 h# j! [: t* F1 g8 W
家用Telus 已经封锁了不少端口。 也随时不通知下说锁就锁, 非常讨厌。/ B+ z. |9 i$ [- O/ L# j9 t' ~8 M
# O1 r5 O4 ]* ~' X# t( t" ^$ sDoes Telus block any ports? / y5 J5 O* F$ `$ ?
$ R' l1 A1 k# G \, S1 ~' EThe only packages with no blocked ports at this time are the Server packages. ! D* z2 p& p) J8 L" A* V9 `
; p2 L1 |1 z# V7 r6 \) j7 FThe Blocked ports currently are:; {4 a7 p; b: o6 U
9 b' J% g. Z& J S
TCP 21 (ftp)5 [: l$ u# q- j# ~' w
Customers running an FTP server will no longer be able to have Internet users connect to their server. Many customers computers are used as FTP servers to store illegal files.5 [2 n/ W' O) n9 p* H. `
) k* \* y& |7 D) Y% S0 u. h
TCP 25 (smtp)8 i! |/ e1 }( x9 A, H; Z9 r( R! _- i3 p
Customers running a SMTP mail server will no longer be able to receive email requests. Also, Telus users will not be able to connect to non-Telus smtp servers on port 25. Prevent mail servers that operate as an open relay. Open relays are used without a customer?s knowledge to sends millions of pieces of Spam.
! c) t; C$ _ q! ?
& }- @! T8 @+ k/ ]& \" q5 k9 zTCP 80 (www)
- o1 a6 l) ?3 o3 _, g: ?/ pCustomers running a Web server will no longer be able to have Internet users connect to their server. Common exploit on old Window IIS server and Linux boxes that are not properly patched., t: ?: P$ [0 w8 Z$ ^$ p
1 u$ ?, `0 H0 v/ Q- CTCP 110 (pop3); y+ K/ |. [% x. J" j
Customers running a POP mail server will no longer be able to have Internet users connect to the server. Prevent mail servers that operate as an open relay. Open relays are used without a customer?s knowledge to sends millions of pieces of Spam.# B5 {7 w" z. e/ F' ?- d
- O8 b! ~, c* N# f) uTCP 6667 (ircd)
, f& B9 I; U0 D& t4 \Customers running a IRC server (Internet Relay Chat) will no longer be able to have Internet users connect to the server.
8 U2 i" q+ |% R) k( V) E+ A/ E7 \6 v f
/ c7 Q# O' F4 ^, E& k1 q) {TCP/UDP 135-139 (dcom and netbios)
/ w* K" P1 D; yThese ports are commonly exploited by worm viruses:
2 |8 e8 J6 \ v0 t135 Windows RPC
6 S i+ i4 \2 `* Y) G136 PROFILE Naming System (basically unused)
' J( K( r; n8 F& P0 X+ A137-139 Windows NetBios+ G5 z+ s" m, I
$ x/ _/ ~2 R* K& P3 Q; W8 @0 O
TCP/UDP 445 (ms-ds)0 @8 F) L# e3 X) X
Microsoft Directory Services - Customers that allow legitimate Internet users access to their computers will loose this ability. This allows hackers to directly connect to a Windows based computer and gain total control over the OS.
! T4 ~% i7 q$ _* O: y
. i: [' B G" U: P( ?TCP/UDP 1433-1434 (ms-sql)
6 ]8 X4 N: Q1 i0 a3 j) hMicrosoft SQL server - Customer running an SQL server will no long be able to have Internet user connect to their server. There are several worm viruses that exploit holes in SQL server. |
|