 鲜花( 87)  鸡蛋( 1)
|
之前发过一个帖子有关Telus, Shaw 的比较, % {& U- a2 b4 U% n
家用Telus 已经封锁了不少端口。 也随时不通知下说锁就锁, 非常讨厌。
6 b t7 E" }+ x" ?+ n9 M% V- X
0 O- o' J6 _6 `2 _! }- eDoes Telus block any ports?
9 b$ m; @' _7 y& |8 x
. _8 p* f3 _6 l) j& gThe only packages with no blocked ports at this time are the Server packages.
' j6 m' Y5 Z% R2 ]) y. G7 m+ x, s: A: u* d9 A' ?: j7 ^" A- Q6 |
The Blocked ports currently are:# a. ~0 ?- g7 s- i6 d' O. z
( w4 S/ U5 l$ K( d
TCP 21 (ftp)) Z8 \ j! a4 A- i \% H+ Q
Customers running an FTP server will no longer be able to have Internet users connect to their server. Many customers computers are used as FTP servers to store illegal files.
6 Q! Y ?, O4 H9 Y# {* F7 [
! R2 H) ]" l N. Z6 S9 N2 BTCP 25 (smtp)
9 U, x" g0 K; v7 `Customers running a SMTP mail server will no longer be able to receive email requests. Also, Telus users will not be able to connect to non-Telus smtp servers on port 25. Prevent mail servers that operate as an open relay. Open relays are used without a customer?s knowledge to sends millions of pieces of Spam.7 r/ {0 R$ n% f1 i- |, Q5 \! ^
% a& p# c0 z7 f3 P
TCP 80 (www). |* ^: r" D; {( e$ i1 A; H5 E" O
Customers running a Web server will no longer be able to have Internet users connect to their server. Common exploit on old Window IIS server and Linux boxes that are not properly patched.
8 i( p2 E) S5 { \. U+ \# R0 ?8 D" s8 O' V+ s% ?
TCP 110 (pop3)
7 B a+ `& W3 q" YCustomers running a POP mail server will no longer be able to have Internet users connect to the server. Prevent mail servers that operate as an open relay. Open relays are used without a customer?s knowledge to sends millions of pieces of Spam.+ |6 o) s0 c5 _ ?2 X: i
: Z( G* x# g4 \' z# L) g. o# ~
TCP 6667 (ircd)3 p0 l. W. z4 b0 d
Customers running a IRC server (Internet Relay Chat) will no longer be able to have Internet users connect to the server." L0 n- B+ K1 x" b9 M, x+ ]
8 a( x; X1 I) k" z6 t9 S4 c& P- Y% r
TCP/UDP 135-139 (dcom and netbios)
: Z: E- ~% P6 }, K6 ]" UThese ports are commonly exploited by worm viruses:/ R7 x& b/ k" X! D. @
135 Windows RPC, L4 T# u, J( j2 U; n4 w
136 PROFILE Naming System (basically unused)
$ @) Z: a+ [# v2 r" N137-139 Windows NetBios
* L+ W& w, n. H5 z
' w0 ~ J( g/ [- E% KTCP/UDP 445 (ms-ds)
% [" N+ Z+ B# B1 X+ vMicrosoft Directory Services - Customers that allow legitimate Internet users access to their computers will loose this ability. This allows hackers to directly connect to a Windows based computer and gain total control over the OS.
$ w, J# M5 @( P S/ v9 I
1 v" k1 J9 [1 `( RTCP/UDP 1433-1434 (ms-sql)2 V9 z; c1 V/ h* S, s
Microsoft SQL server - Customer running an SQL server will no long be able to have Internet user connect to their server. There are several worm viruses that exploit holes in SQL server. |
|