 鲜花( 87)  鸡蛋( 1)
|
之前发过一个帖子有关Telus, Shaw 的比较, / Y5 v( y5 g) V* |& `4 J
家用Telus 已经封锁了不少端口。 也随时不通知下说锁就锁, 非常讨厌。
5 W% T# c0 B$ c4 b ]* c3 n
% f1 Z: e. t% D# ADoes Telus block any ports? 5 ^6 l: I7 `1 [' t4 i
% ~; v e$ D( j$ j8 {0 cThe only packages with no blocked ports at this time are the Server packages.
9 m) g+ A8 f7 @( x% w" u, B+ b0 b
The Blocked ports currently are:' [" J3 F9 C- Q3 W, ?* o
5 C6 N2 E) D3 y, \, h2 s3 p
TCP 21 (ftp)
( t5 X) f) U$ N! ^: cCustomers running an FTP server will no longer be able to have Internet users connect to their server. Many customers computers are used as FTP servers to store illegal files.
0 J6 ?- E6 s1 ^( t
^8 v9 _8 l: B7 s f: R; M8 oTCP 25 (smtp)
5 G+ q3 r6 f9 gCustomers running a SMTP mail server will no longer be able to receive email requests. Also, Telus users will not be able to connect to non-Telus smtp servers on port 25. Prevent mail servers that operate as an open relay. Open relays are used without a customer?s knowledge to sends millions of pieces of Spam.) V* ^' S1 o q Y
# ^- M# X. s0 {! `TCP 80 (www), `+ X3 |/ p' q( U
Customers running a Web server will no longer be able to have Internet users connect to their server. Common exploit on old Window IIS server and Linux boxes that are not properly patched.8 n& e5 o1 v, w& d2 n" U
: C' y# p( f/ S% H8 qTCP 110 (pop3), e) z N' {; i2 i/ E( E
Customers running a POP mail server will no longer be able to have Internet users connect to the server. Prevent mail servers that operate as an open relay. Open relays are used without a customer?s knowledge to sends millions of pieces of Spam.
1 k( U1 t- t" r, y9 \# L+ `7 C& ~7 G6 C! x2 O
TCP 6667 (ircd)8 s: K4 Z, b5 e& ?/ v! A7 Q
Customers running a IRC server (Internet Relay Chat) will no longer be able to have Internet users connect to the server.* Z, I2 Y- {$ a& ?; e
, E. q @! x* H/ T# o+ D6 h: L/ u' XTCP/UDP 135-139 (dcom and netbios)7 A& v4 u2 z. Y# T: ^% y
These ports are commonly exploited by worm viruses:/ D: R6 O; c$ k U1 x4 e3 M" }
135 Windows RPC
2 H* [6 s) O4 E/ T! F136 PROFILE Naming System (basically unused)1 E- P9 p+ a4 L
137-139 Windows NetBios
& ]# v1 d) ~9 Y9 P; b$ a9 ^1 A; S) h. G3 Q L
TCP/UDP 445 (ms-ds)
8 u, n4 d9 c! E$ A, YMicrosoft Directory Services - Customers that allow legitimate Internet users access to their computers will loose this ability. This allows hackers to directly connect to a Windows based computer and gain total control over the OS.# [ R3 Z( s7 a7 M$ _
5 O6 j$ W h$ e' h
TCP/UDP 1433-1434 (ms-sql)( @2 B- S) f- G$ r3 a: f' ]
Microsoft SQL server - Customer running an SQL server will no long be able to have Internet user connect to their server. There are several worm viruses that exploit holes in SQL server. |
|