 鲜花( 87)  鸡蛋( 1)
|
之前发过一个帖子有关Telus, Shaw 的比较, 3 ?3 @; e' I# a; A- F }
家用Telus 已经封锁了不少端口。 也随时不通知下说锁就锁, 非常讨厌。4 d- s" k6 h) h$ f- r/ T
5 R9 u8 t' U7 s' a- Y( u* x T; UDoes Telus block any ports?
- s6 `+ P! H0 p7 J% B
, o6 N# l% R" }9 S, c0 jThe only packages with no blocked ports at this time are the Server packages. ; e* o4 l5 f7 U: v5 s( z" A) u8 @
0 T' l( Y. ?* ?+ [/ v
The Blocked ports currently are:2 L5 F/ U4 ~# j+ j q! h
1 ~5 n( G) Z V7 _7 u) }TCP 21 (ftp)0 ?9 [, n* @3 L8 }; L
Customers running an FTP server will no longer be able to have Internet users connect to their server. Many customers computers are used as FTP servers to store illegal files.
! F) ^3 L3 c ?" c+ R" b+ N
% A0 m4 q Y! r" x3 r7 lTCP 25 (smtp)
L# I5 ]/ f/ t6 NCustomers running a SMTP mail server will no longer be able to receive email requests. Also, Telus users will not be able to connect to non-Telus smtp servers on port 25. Prevent mail servers that operate as an open relay. Open relays are used without a customer?s knowledge to sends millions of pieces of Spam.* R+ @) }, e2 x) c+ B
3 r" ?3 h' Y3 q- ~" E. uTCP 80 (www)
, j9 a1 ?/ h aCustomers running a Web server will no longer be able to have Internet users connect to their server. Common exploit on old Window IIS server and Linux boxes that are not properly patched.
$ t4 B0 \- U: r: V5 K* x6 e) m" _+ W" `0 b% S q
TCP 110 (pop3)
& L8 ~; W" l l( A- LCustomers running a POP mail server will no longer be able to have Internet users connect to the server. Prevent mail servers that operate as an open relay. Open relays are used without a customer?s knowledge to sends millions of pieces of Spam.
$ L# [ t7 u" O( P8 a$ ?7 h" _4 r2 v
TCP 6667 (ircd)
$ U+ S1 ]( x+ v% [7 eCustomers running a IRC server (Internet Relay Chat) will no longer be able to have Internet users connect to the server.
/ ^$ u6 y1 T7 O, U" o
3 B* V" a- _& @; p9 M( ~2 [TCP/UDP 135-139 (dcom and netbios)% w% H' ?* |( t, Z3 V$ e1 q
These ports are commonly exploited by worm viruses:2 B: ]. r. h' L3 W( b8 T1 C
135 Windows RPC
9 w) Y) Y+ o5 p1 Y' P136 PROFILE Naming System (basically unused)- H8 |# x7 j* x1 C9 @
137-139 Windows NetBios0 T# }; _' Z$ m Y$ k- M
7 t' |' ~8 U$ _7 f, [TCP/UDP 445 (ms-ds)* j+ _3 v; z l' I
Microsoft Directory Services - Customers that allow legitimate Internet users access to their computers will loose this ability. This allows hackers to directly connect to a Windows based computer and gain total control over the OS.
! M8 s3 d9 Z6 K5 L. ]5 I: D+ }$ T/ m' U5 h4 m% L
TCP/UDP 1433-1434 (ms-sql)
! R, m r% n, ]Microsoft SQL server - Customer running an SQL server will no long be able to have Internet user connect to their server. There are several worm viruses that exploit holes in SQL server. |
|