 鲜花( 87)  鸡蛋( 1)
|
之前发过一个帖子有关Telus, Shaw 的比较, 5 a0 y, r# j& Z
家用Telus 已经封锁了不少端口。 也随时不通知下说锁就锁, 非常讨厌。1 e! ]( I# E K; ^' d
* u0 R+ A8 `9 x9 W' i f9 }5 H# n: DDoes Telus block any ports? . c2 b9 F" y+ k T6 w0 T( f4 D7 H
. X4 C& ` H' G2 J" p/ [
The only packages with no blocked ports at this time are the Server packages.
' V" ^' ~) K( p
3 G# k9 ~9 f0 }2 R2 I# nThe Blocked ports currently are:
! p2 C0 A; W! i' Q8 L0 L' @3 r& @# {5 p0 M1 f+ S& L) D
TCP 21 (ftp). F8 Q8 \6 z7 f; I0 K4 R
Customers running an FTP server will no longer be able to have Internet users connect to their server. Many customers computers are used as FTP servers to store illegal files.* u3 s, I- ~' M) A
" @/ p( ^7 l+ n7 \. U% G* [7 X8 E
TCP 25 (smtp)" U1 j ~- Y M: U
Customers running a SMTP mail server will no longer be able to receive email requests. Also, Telus users will not be able to connect to non-Telus smtp servers on port 25. Prevent mail servers that operate as an open relay. Open relays are used without a customer?s knowledge to sends millions of pieces of Spam.7 u$ S& `1 m1 u
) _( u2 R+ V2 o& UTCP 80 (www)4 |* T7 o8 u- c4 S. j: Q5 x
Customers running a Web server will no longer be able to have Internet users connect to their server. Common exploit on old Window IIS server and Linux boxes that are not properly patched.- m% e& Z2 r. s
6 P9 Y# O7 Z- P9 QTCP 110 (pop3)8 |( g1 \8 ^* `* e# F: \: i
Customers running a POP mail server will no longer be able to have Internet users connect to the server. Prevent mail servers that operate as an open relay. Open relays are used without a customer?s knowledge to sends millions of pieces of Spam.0 t6 q9 U7 g5 C/ S. F ^+ m3 v1 f p
( I! j5 T! r7 ~0 y. x7 t3 d( v! {
TCP 6667 (ircd)8 v5 {% U9 y- ]
Customers running a IRC server (Internet Relay Chat) will no longer be able to have Internet users connect to the server.
) g: Y. _# H8 O. K0 M, ~( S( Z, G( z, I5 U m
TCP/UDP 135-139 (dcom and netbios)
% S) [) P% E W7 G/ V sThese ports are commonly exploited by worm viruses:* x6 i3 V! g% X" c2 R8 [8 W7 T
135 Windows RPC
6 _; h; }8 j3 v% E4 ^: H136 PROFILE Naming System (basically unused)
2 ~6 A# O& d, G4 ]137-139 Windows NetBios
+ Q# P; o2 I. L _, y7 R9 A" J7 \
! R" b# q; k; q, F- X1 _TCP/UDP 445 (ms-ds)
) N- q7 f$ Y KMicrosoft Directory Services - Customers that allow legitimate Internet users access to their computers will loose this ability. This allows hackers to directly connect to a Windows based computer and gain total control over the OS.
* L: ], z! N' l. j6 b; R. ^4 f5 B+ _
TCP/UDP 1433-1434 (ms-sql)
. a! K [* e U& Q7 o6 QMicrosoft SQL server - Customer running an SQL server will no long be able to have Internet user connect to their server. There are several worm viruses that exploit holes in SQL server. |
|