 鲜花( 87)  鸡蛋( 1)
|
之前发过一个帖子有关Telus, Shaw 的比较, . P- Z: J# A; P( v
家用Telus 已经封锁了不少端口。 也随时不通知下说锁就锁, 非常讨厌。
6 l: m/ }2 M4 A- z3 V% j: r
. F7 K1 {, P! w' w1 vDoes Telus block any ports? ( }3 i% D, m. A$ I1 U3 H
, F" X3 Y; \; G) p- i- z2 v& z+ rThe only packages with no blocked ports at this time are the Server packages. 3 k& H1 q# U# }
; K y |7 u6 l) A0 @' wThe Blocked ports currently are:1 h" Q4 G. o, q( u2 j9 f- ^0 h. i
0 Y4 {2 q9 O0 N* q) B% U" Y& q" b
TCP 21 (ftp)2 e. a) M: n$ H1 \
Customers running an FTP server will no longer be able to have Internet users connect to their server. Many customers computers are used as FTP servers to store illegal files.
3 x7 ^2 U9 q& h+ K( K0 ?" Y% C/ ~; R5 S0 `, h5 w) P
TCP 25 (smtp)
- m* q7 J4 ^; O$ f4 l4 L" S, c8 wCustomers running a SMTP mail server will no longer be able to receive email requests. Also, Telus users will not be able to connect to non-Telus smtp servers on port 25. Prevent mail servers that operate as an open relay. Open relays are used without a customer?s knowledge to sends millions of pieces of Spam.( i Y+ a$ y* T# B2 l; S
% U# A4 g+ Z* n4 U# c3 v) b
TCP 80 (www)3 z* [" r! Z7 C1 x" q
Customers running a Web server will no longer be able to have Internet users connect to their server. Common exploit on old Window IIS server and Linux boxes that are not properly patched.
$ J* {5 v4 X: c y& m/ z
. K/ L+ n9 X# d# c8 L, ?" P' ~$ nTCP 110 (pop3). g/ P |! M+ W: n( P3 [
Customers running a POP mail server will no longer be able to have Internet users connect to the server. Prevent mail servers that operate as an open relay. Open relays are used without a customer?s knowledge to sends millions of pieces of Spam.! `, E) j j- A7 q% K0 S
J# |: O1 K' z. [- R- w/ T4 ]TCP 6667 (ircd)
+ L, S h3 ^. f* Y# B& dCustomers running a IRC server (Internet Relay Chat) will no longer be able to have Internet users connect to the server.7 e* J8 x8 V' M2 c$ A
2 K" X; k0 F' K3 k) QTCP/UDP 135-139 (dcom and netbios); r2 i6 Z5 r V8 G
These ports are commonly exploited by worm viruses:
8 k6 z; [5 ]# H$ u5 u$ b135 Windows RPC
! i3 W0 f' i3 _136 PROFILE Naming System (basically unused)0 O3 s% y+ {( K# q5 Z
137-139 Windows NetBios
( H& h2 [5 ?# \5 {2 x8 z2 o7 F! }, @, b5 ]
TCP/UDP 445 (ms-ds)
* ^) c7 m: z- k4 a& W& E1 m+ OMicrosoft Directory Services - Customers that allow legitimate Internet users access to their computers will loose this ability. This allows hackers to directly connect to a Windows based computer and gain total control over the OS.
% `" Y+ `) J' {9 I; z$ f) Y% I* E @2 _, b8 K5 [. j2 |
TCP/UDP 1433-1434 (ms-sql)
1 ]' F. w" S. W$ O0 pMicrosoft SQL server - Customer running an SQL server will no long be able to have Internet user connect to their server. There are several worm viruses that exploit holes in SQL server. |
|