 鲜花( 87)  鸡蛋( 1)
|
之前发过一个帖子有关Telus, Shaw 的比较,
; _: ~2 {+ S# ]6 m$ `0 d家用Telus 已经封锁了不少端口。 也随时不通知下说锁就锁, 非常讨厌。0 M% U( F, [6 G( h* `9 {* \
+ L, V+ |, O% a# |; d( `Does Telus block any ports? 3 F8 r! S/ X; s
, D0 s9 {$ j" O: s
The only packages with no blocked ports at this time are the Server packages.
* W" Z! l+ p+ a! L% ]- K
* N# C7 K4 y9 S$ Y8 h; | YThe Blocked ports currently are:( W6 Y8 B# S9 h, t! g
9 e1 n6 t$ V9 l; n/ B, c P
TCP 21 (ftp)( Z7 |% `( W$ O" ?2 h0 \$ Z
Customers running an FTP server will no longer be able to have Internet users connect to their server. Many customers computers are used as FTP servers to store illegal files.
, U3 T+ u/ t3 `1 w$ w1 {
, ~" F. x. w- [2 l0 e2 _TCP 25 (smtp)
. _ z q8 Z& d4 \Customers running a SMTP mail server will no longer be able to receive email requests. Also, Telus users will not be able to connect to non-Telus smtp servers on port 25. Prevent mail servers that operate as an open relay. Open relays are used without a customer?s knowledge to sends millions of pieces of Spam.& t1 t& K1 P! r o
7 B/ c% m0 e4 [" [1 `8 y3 i. xTCP 80 (www)# F' |* z/ t4 a3 ~' Q
Customers running a Web server will no longer be able to have Internet users connect to their server. Common exploit on old Window IIS server and Linux boxes that are not properly patched.
: J7 t; D; }# t; G: l; W* k0 x1 L1 o" G e
TCP 110 (pop3)
# \4 _- | @; k& v) sCustomers running a POP mail server will no longer be able to have Internet users connect to the server. Prevent mail servers that operate as an open relay. Open relays are used without a customer?s knowledge to sends millions of pieces of Spam.
, A y+ t+ A6 f) h6 ?" `0 F( e& X, `' @ l4 Q6 u7 X( ^
TCP 6667 (ircd)
7 x8 @) w5 ?! g2 _3 O; o: m4 ECustomers running a IRC server (Internet Relay Chat) will no longer be able to have Internet users connect to the server.
" b8 |& ~& S5 n) v+ E$ q
, `! [+ n7 ^6 n ZTCP/UDP 135-139 (dcom and netbios)
# g3 y; L1 `+ [' P5 A9 |8 rThese ports are commonly exploited by worm viruses:" F% }' u) }$ D% c7 e2 B; ~) d
135 Windows RPC! Y; ?! }, H$ @# c
136 PROFILE Naming System (basically unused)
( F7 O3 b, r! w/ d137-139 Windows NetBios3 R$ K( {6 f3 C8 \; c
8 V4 p0 _+ ~3 x& K, V, F7 l
TCP/UDP 445 (ms-ds)
O2 i% g( W3 _! q, SMicrosoft Directory Services - Customers that allow legitimate Internet users access to their computers will loose this ability. This allows hackers to directly connect to a Windows based computer and gain total control over the OS.7 e# L8 T. O9 m
+ S: s" e7 W- D% a
TCP/UDP 1433-1434 (ms-sql)1 m6 D, A' T U- k+ {% k& F3 ]
Microsoft SQL server - Customer running an SQL server will no long be able to have Internet user connect to their server. There are several worm viruses that exploit holes in SQL server. |
|