 鲜花( 87)  鸡蛋( 1)
|
之前发过一个帖子有关Telus, Shaw 的比较, . _( k& d. p% _! ~9 u! z
家用Telus 已经封锁了不少端口。 也随时不通知下说锁就锁, 非常讨厌。
1 Y3 v$ i3 M/ u% B s% ]* P! a
1 O! U. q# j1 k n& i' v! KDoes Telus block any ports? 7 t @. `- S6 m6 n
% a; P1 Q9 U6 {; ?4 y2 Y& Y/ ?
The only packages with no blocked ports at this time are the Server packages.
6 m( ]; R+ R% x5 j2 a# y6 f1 W# k' b; A, R
The Blocked ports currently are:/ W1 o0 n8 D) U
) B% L0 A l8 \( T4 ZTCP 21 (ftp)
- h- U" Z% v6 q0 S6 c) N; nCustomers running an FTP server will no longer be able to have Internet users connect to their server. Many customers computers are used as FTP servers to store illegal files.
8 N% t- l) u8 k" Q8 U, N
* t, T# G) C Z- L) r# XTCP 25 (smtp)
, g# ]% J T+ K' b0 NCustomers running a SMTP mail server will no longer be able to receive email requests. Also, Telus users will not be able to connect to non-Telus smtp servers on port 25. Prevent mail servers that operate as an open relay. Open relays are used without a customer?s knowledge to sends millions of pieces of Spam.
: X" e, E( \; D: L" E6 T& |& u( V, F9 e1 b+ t$ d
TCP 80 (www)
2 m8 F4 [3 P4 r3 dCustomers running a Web server will no longer be able to have Internet users connect to their server. Common exploit on old Window IIS server and Linux boxes that are not properly patched.
' E/ o0 q( ]% u% h* w9 b) r$ Y: f* y8 j0 a/ p/ R
TCP 110 (pop3)
& h) |2 I2 k( b$ {Customers running a POP mail server will no longer be able to have Internet users connect to the server. Prevent mail servers that operate as an open relay. Open relays are used without a customer?s knowledge to sends millions of pieces of Spam.
! W) z+ r: ^6 T6 K5 {# r5 i+ ]) o2 f
TCP 6667 (ircd)4 l% _) R& }+ }" }: P4 x
Customers running a IRC server (Internet Relay Chat) will no longer be able to have Internet users connect to the server.
) O- i( x) G& W6 Y9 ~, l; w- k' h6 `
2 O; a. _& v8 j' H l5 kTCP/UDP 135-139 (dcom and netbios)/ Y& g; [5 P. I# X6 F" `
These ports are commonly exploited by worm viruses:; i' o& D0 D% u9 Q+ o o; S
135 Windows RPC
2 P0 b- P5 L M C136 PROFILE Naming System (basically unused)
8 q1 P& F. o! I! P6 g137-139 Windows NetBios
, D: q2 ^5 H( H: _1 I8 A
- e+ M" U/ [1 O y2 O) |5 ]" QTCP/UDP 445 (ms-ds)% l+ E: C; t) V P$ k( E
Microsoft Directory Services - Customers that allow legitimate Internet users access to their computers will loose this ability. This allows hackers to directly connect to a Windows based computer and gain total control over the OS.! C" C$ v F+ F( p6 R5 C
. G" A6 n4 r6 i+ T* r# PTCP/UDP 1433-1434 (ms-sql); k! M8 n+ _# e8 P$ E' S$ v
Microsoft SQL server - Customer running an SQL server will no long be able to have Internet user connect to their server. There are several worm viruses that exploit holes in SQL server. |
|