 鲜花( 87)  鸡蛋( 1)
|
之前发过一个帖子有关Telus, Shaw 的比较,
M+ I/ E$ ~' k: U家用Telus 已经封锁了不少端口。 也随时不通知下说锁就锁, 非常讨厌。
. z' G p+ r$ v6 S/ l. `. v" b# d
" @* V" |* Z4 f H7 j% D- R; QDoes Telus block any ports? x0 e) o- [" U1 z( P
3 T# l) F) J6 }4 LThe only packages with no blocked ports at this time are the Server packages.
2 K4 Y6 D1 n8 ] ~- x& x8 E9 }( h& e" Q1 z; p" }
The Blocked ports currently are:
" ~) ?( E9 {0 U& z- a2 p+ w/ D' z. _
TCP 21 (ftp)
4 H$ q2 C& Q; n+ {6 CCustomers running an FTP server will no longer be able to have Internet users connect to their server. Many customers computers are used as FTP servers to store illegal files.
: c# a9 F: w1 F) E/ b; ~# ?6 u7 A( G2 S L
TCP 25 (smtp)% {, {: r2 Z% N1 }
Customers running a SMTP mail server will no longer be able to receive email requests. Also, Telus users will not be able to connect to non-Telus smtp servers on port 25. Prevent mail servers that operate as an open relay. Open relays are used without a customer?s knowledge to sends millions of pieces of Spam.; u% A6 v- m# [3 D- O9 O
, q* \) n- B* ?8 ]7 p
TCP 80 (www)/ X: @7 P1 D' Z7 e
Customers running a Web server will no longer be able to have Internet users connect to their server. Common exploit on old Window IIS server and Linux boxes that are not properly patched.
" r% X' Q/ ]$ M5 Z! W; Y! x
) \; e. H' M% f( a9 \# ]" J2 R4 r9 lTCP 110 (pop3)* g0 \4 |* J$ v3 i9 Q
Customers running a POP mail server will no longer be able to have Internet users connect to the server. Prevent mail servers that operate as an open relay. Open relays are used without a customer?s knowledge to sends millions of pieces of Spam.5 J8 X5 ?5 ^" e
! s# ?$ P. l. r* j, | B
TCP 6667 (ircd)
/ R( R4 h% ?5 i$ E- G% Y. hCustomers running a IRC server (Internet Relay Chat) will no longer be able to have Internet users connect to the server.) }- [+ d. F4 {8 F* s$ m
6 t2 \. D2 Z4 W& f! b* q6 M1 S
TCP/UDP 135-139 (dcom and netbios)5 w2 V6 b0 | I1 I; o+ R' M
These ports are commonly exploited by worm viruses:
3 o0 v5 q* n: L, @' I4 m135 Windows RPC
- K3 T5 y' e5 c6 J; M: S3 C136 PROFILE Naming System (basically unused)
/ J$ `* ~% M5 j2 V; k137-139 Windows NetBios
+ k) f4 s$ f. h% t
+ ^2 P% U; t, w3 T* TTCP/UDP 445 (ms-ds)
: C1 c' I* h4 PMicrosoft Directory Services - Customers that allow legitimate Internet users access to their computers will loose this ability. This allows hackers to directly connect to a Windows based computer and gain total control over the OS.! k! H/ i# Z# K1 w% Y/ r
6 g! j2 Q* H8 ~: y6 \* ~9 E# R+ t- [TCP/UDP 1433-1434 (ms-sql)/ u( X N0 _/ C0 S
Microsoft SQL server - Customer running an SQL server will no long be able to have Internet user connect to their server. There are several worm viruses that exploit holes in SQL server. |
|