 鲜花( 87)  鸡蛋( 1)
|
之前发过一个帖子有关Telus, Shaw 的比较, 4 ^! L V* ?( Y0 Q J
家用Telus 已经封锁了不少端口。 也随时不通知下说锁就锁, 非常讨厌。; T; Z- [/ z$ Q
( h: b* X3 `! n: G$ }" c4 z/ ODoes Telus block any ports? 7 Z$ z. I1 Q, J \/ _
! T/ x6 ^+ A+ e/ P4 {The only packages with no blocked ports at this time are the Server packages.
0 u# b+ a! ~: X$ T! ?8 L2 S) l+ G: Z; _7 J4 N. b
The Blocked ports currently are:
% a: a. u, c: r
% y: a$ p( g5 DTCP 21 (ftp)0 y3 v& I% i" u$ _7 s6 _4 m
Customers running an FTP server will no longer be able to have Internet users connect to their server. Many customers computers are used as FTP servers to store illegal files.
7 i' P1 n3 R0 a0 U4 |7 R% q; I% y' J& {! m6 w9 a4 P
TCP 25 (smtp)
, t3 h3 r) _* p6 ^Customers running a SMTP mail server will no longer be able to receive email requests. Also, Telus users will not be able to connect to non-Telus smtp servers on port 25. Prevent mail servers that operate as an open relay. Open relays are used without a customer?s knowledge to sends millions of pieces of Spam.1 }) g# b2 V5 W
3 t' u* S: j, V& t2 g& w, M7 k# \3 ZTCP 80 (www)% d- \6 ?) G% ~, k
Customers running a Web server will no longer be able to have Internet users connect to their server. Common exploit on old Window IIS server and Linux boxes that are not properly patched.4 X/ I; A) a6 D
& b' G9 o9 ~) @$ pTCP 110 (pop3)
0 L& f! |6 ]! k$ ?" d3 lCustomers running a POP mail server will no longer be able to have Internet users connect to the server. Prevent mail servers that operate as an open relay. Open relays are used without a customer?s knowledge to sends millions of pieces of Spam.
7 G+ g, _/ d0 q3 J
: M/ u7 j5 n B' s5 [" _TCP 6667 (ircd)1 l0 I* e! I( K$ \
Customers running a IRC server (Internet Relay Chat) will no longer be able to have Internet users connect to the server.' j4 a/ y' w* T7 f; A$ k
* v: r! p: f$ y: `5 Z
TCP/UDP 135-139 (dcom and netbios)
_6 t b" m7 w- \! q1 V" C5 r& }These ports are commonly exploited by worm viruses:
6 @8 M. H6 @2 O- |/ V( b7 z% u# T. h135 Windows RPC
$ Y9 F) e3 x: K2 {2 Q136 PROFILE Naming System (basically unused)
7 P% _/ i1 O! x6 g137-139 Windows NetBios% L, m" F2 p- l1 I# |1 T
" y, g8 }$ [ V5 j
TCP/UDP 445 (ms-ds)
! t& \! S7 G: DMicrosoft Directory Services - Customers that allow legitimate Internet users access to their computers will loose this ability. This allows hackers to directly connect to a Windows based computer and gain total control over the OS.( W {* S8 g8 d' P
( M4 B" J- N" d% c/ Z+ Z) n
TCP/UDP 1433-1434 (ms-sql)
0 _9 Z+ {: i7 U8 e. _$ u8 s. FMicrosoft SQL server - Customer running an SQL server will no long be able to have Internet user connect to their server. There are several worm viruses that exploit holes in SQL server. |
|