 鲜花( 87)  鸡蛋( 1)
|
之前发过一个帖子有关Telus, Shaw 的比较, 7 |" w5 K# l6 z" x& _& o8 o0 ]8 g
家用Telus 已经封锁了不少端口。 也随时不通知下说锁就锁, 非常讨厌。
& L2 t. x3 {( \$ j8 u& p( p0 K5 V% r, Z
Does Telus block any ports? 8 I6 E3 D. @) W6 s8 @3 f# Z& C1 J
( @2 B9 J& x; t s# G& Y) ^
The only packages with no blocked ports at this time are the Server packages. # x8 q/ r8 q; ~, V
2 |4 ?9 j' w) A$ J& DThe Blocked ports currently are:+ J; W m0 y6 Y7 i4 D5 S$ U
0 e% Y5 b7 y3 K
TCP 21 (ftp)
8 k; }+ W6 q2 G- _2 W) W- XCustomers running an FTP server will no longer be able to have Internet users connect to their server. Many customers computers are used as FTP servers to store illegal files.- [2 H+ h" I5 j) A$ h7 A% y+ ~
6 [, H" n3 U M3 K( ]
TCP 25 (smtp)3 U; j3 J. k4 d
Customers running a SMTP mail server will no longer be able to receive email requests. Also, Telus users will not be able to connect to non-Telus smtp servers on port 25. Prevent mail servers that operate as an open relay. Open relays are used without a customer?s knowledge to sends millions of pieces of Spam.1 @! a, \8 W: @
% ^7 j9 g2 t8 [8 vTCP 80 (www)2 W' z) O+ b8 l/ y) ]" H
Customers running a Web server will no longer be able to have Internet users connect to their server. Common exploit on old Window IIS server and Linux boxes that are not properly patched.
5 D! e) `+ B, x* x1 x, J1 B9 \! J' O& }# s! H
TCP 110 (pop3)9 [, O1 x5 J) q5 [* Q ?
Customers running a POP mail server will no longer be able to have Internet users connect to the server. Prevent mail servers that operate as an open relay. Open relays are used without a customer?s knowledge to sends millions of pieces of Spam./ t7 a0 C5 c6 E* S) ?+ m' S
$ n6 @" h1 o) Z- J) jTCP 6667 (ircd)) v8 g+ V: k" m, _0 L
Customers running a IRC server (Internet Relay Chat) will no longer be able to have Internet users connect to the server.! o2 p/ ]( S; ~! R6 o
& ` o+ H1 }3 x. ~0 A9 v
TCP/UDP 135-139 (dcom and netbios)
+ G( \7 \$ g) @' @- i" h EThese ports are commonly exploited by worm viruses:2 ?# \+ ~! v7 q/ I5 L4 w* t# {
135 Windows RPC1 p$ h) i; `+ P4 }! [% V) b# z
136 PROFILE Naming System (basically unused)
! O# ?6 m9 J; V( L0 c6 N& ]% M137-139 Windows NetBios" e$ t1 ] d+ v: k6 r1 c4 j
7 y: v9 m# n' l5 d& L; I0 ATCP/UDP 445 (ms-ds)* C( c; f# J+ l X4 `3 c- s( J
Microsoft Directory Services - Customers that allow legitimate Internet users access to their computers will loose this ability. This allows hackers to directly connect to a Windows based computer and gain total control over the OS., P# p* R9 b0 s+ k$ q/ p
! r: Y$ k9 n' j; E0 H6 u7 U: P9 @TCP/UDP 1433-1434 (ms-sql)
) g2 D7 X7 r5 g2 Z: EMicrosoft SQL server - Customer running an SQL server will no long be able to have Internet user connect to their server. There are several worm viruses that exploit holes in SQL server. |
|