 鲜花( 87)  鸡蛋( 1)
|
之前发过一个帖子有关Telus, Shaw 的比较, % S6 D% W0 p2 j* ~
家用Telus 已经封锁了不少端口。 也随时不通知下说锁就锁, 非常讨厌。- O0 z# T7 O% y# O- ]; d
% A2 A3 H+ D! s9 qDoes Telus block any ports?
- r# c* Z' {1 [9 C8 @2 q" V U- |
% I! O/ [" m; X& ]; vThe only packages with no blocked ports at this time are the Server packages.
6 j* x, V# K$ q& N6 {- ?! g1 Z5 D, M
The Blocked ports currently are:! f1 [5 T! o" r5 j
. `% q7 g+ Y' a; U$ d) a; ]. |) tTCP 21 (ftp)% k6 U% z6 i- t$ O4 b7 w
Customers running an FTP server will no longer be able to have Internet users connect to their server. Many customers computers are used as FTP servers to store illegal files.1 W# p R3 [9 o! F7 l
" y, y7 ]1 ~" \# A3 s8 f& v
TCP 25 (smtp)! w$ s7 C* ~: u! w9 j9 q" s
Customers running a SMTP mail server will no longer be able to receive email requests. Also, Telus users will not be able to connect to non-Telus smtp servers on port 25. Prevent mail servers that operate as an open relay. Open relays are used without a customer?s knowledge to sends millions of pieces of Spam.0 h8 N" r1 L W h3 Y, O
* j! b$ ^9 u6 x5 x$ T: @
TCP 80 (www)4 r) t( X4 D7 i
Customers running a Web server will no longer be able to have Internet users connect to their server. Common exploit on old Window IIS server and Linux boxes that are not properly patched.
2 V0 d; F1 m( R; W% N5 n6 L( t2 E* Z, R
TCP 110 (pop3)& g2 S% B B) j
Customers running a POP mail server will no longer be able to have Internet users connect to the server. Prevent mail servers that operate as an open relay. Open relays are used without a customer?s knowledge to sends millions of pieces of Spam.
- A+ _) }1 l! f" X! q& @! A3 l) R- p# p$ U& w$ r w0 u
TCP 6667 (ircd)
+ H: u" X- m9 H* \; ICustomers running a IRC server (Internet Relay Chat) will no longer be able to have Internet users connect to the server.7 J( \1 \7 D! E* l9 C! A. S. f+ Z
' c8 \# D# B& `$ tTCP/UDP 135-139 (dcom and netbios)' U* r) D8 Q( a
These ports are commonly exploited by worm viruses:
& R, e% o4 v+ L135 Windows RPC
; q+ C* i6 x4 D, A. e$ t136 PROFILE Naming System (basically unused)
& V8 m& ], G) N137-139 Windows NetBios$ z4 Z% a. o; z; C
; w" \- r7 ?" a u. f
TCP/UDP 445 (ms-ds); v0 }% f8 C( E5 H# d7 l ?: `# ]; b
Microsoft Directory Services - Customers that allow legitimate Internet users access to their computers will loose this ability. This allows hackers to directly connect to a Windows based computer and gain total control over the OS.' p `7 z& i- O, @9 G& y
8 q% e: ~6 ^& E" OTCP/UDP 1433-1434 (ms-sql)4 ]: ]' w' i4 v7 S. `" H+ z: R1 F3 g
Microsoft SQL server - Customer running an SQL server will no long be able to have Internet user connect to their server. There are several worm viruses that exploit holes in SQL server. |
|