 鲜花( 87)  鸡蛋( 1)
|
之前发过一个帖子有关Telus, Shaw 的比较, * w1 l( j! l" D) I
家用Telus 已经封锁了不少端口。 也随时不通知下说锁就锁, 非常讨厌。; _' ~9 o% R$ w2 t- d4 N
, T; h8 {7 ? C: r/ FDoes Telus block any ports?
% N: d H9 G+ W! x6 _) I
+ H. [% I% Z% |5 }1 E$ } j2 m% W7 |The only packages with no blocked ports at this time are the Server packages.
, ^, {' [) ]& k3 e6 L [( T: O" N# V/ }$ v; x
The Blocked ports currently are:6 b1 o$ Q ]& `# {' s
. L3 `9 D+ p9 V6 A& ~TCP 21 (ftp)& E! D4 }5 ?3 p. O. B9 M
Customers running an FTP server will no longer be able to have Internet users connect to their server. Many customers computers are used as FTP servers to store illegal files.
( z" W: `1 X, n, N3 T. J
, Z& P/ z& G7 [2 R- O1 OTCP 25 (smtp)
' h1 ~7 l. q& w5 V7 V/ OCustomers running a SMTP mail server will no longer be able to receive email requests. Also, Telus users will not be able to connect to non-Telus smtp servers on port 25. Prevent mail servers that operate as an open relay. Open relays are used without a customer?s knowledge to sends millions of pieces of Spam.
+ Z8 j: b' k% j7 f! f' z+ T
! W( h1 G5 l3 x! h% r" \TCP 80 (www)
! p; G0 H( [2 Q( {Customers running a Web server will no longer be able to have Internet users connect to their server. Common exploit on old Window IIS server and Linux boxes that are not properly patched.
- q/ k. u1 v: u/ _. y; r0 f) ?" B. j+ D6 e3 O1 [4 v
TCP 110 (pop3). w9 p/ `1 T' q3 y5 {# p' V
Customers running a POP mail server will no longer be able to have Internet users connect to the server. Prevent mail servers that operate as an open relay. Open relays are used without a customer?s knowledge to sends millions of pieces of Spam.! U1 F" [$ m( X0 U0 ^, Q0 o
4 ?" @% N: O0 ~# W# l' P u; V& t
TCP 6667 (ircd)
& V) R) _$ Y3 E6 UCustomers running a IRC server (Internet Relay Chat) will no longer be able to have Internet users connect to the server.
* g r4 X( q0 {- b" ^+ K8 D
* x* P1 o7 T+ z# P( RTCP/UDP 135-139 (dcom and netbios)
# X7 L! K9 u0 x& ^$ y5 B( a9 FThese ports are commonly exploited by worm viruses:
$ `1 |% j+ @" I+ q135 Windows RPC
0 q; D0 ]+ t$ x9 Y6 x9 t8 r4 W136 PROFILE Naming System (basically unused)8 `" Q" t3 R+ T$ K5 P2 R
137-139 Windows NetBios1 P$ A2 o: [3 o, @8 n0 [
' p, T) A3 T' g) [TCP/UDP 445 (ms-ds)0 g- |3 y) i/ c8 A. g; J
Microsoft Directory Services - Customers that allow legitimate Internet users access to their computers will loose this ability. This allows hackers to directly connect to a Windows based computer and gain total control over the OS.
# l' B% K# K+ F# R9 o# R; a* M
G' B5 v, n5 E% A) U. ^7 j( t7 sTCP/UDP 1433-1434 (ms-sql)
! p7 o2 c. l* fMicrosoft SQL server - Customer running an SQL server will no long be able to have Internet user connect to their server. There are several worm viruses that exploit holes in SQL server. |
|