 鲜花( 87)  鸡蛋( 1)
|
之前发过一个帖子有关Telus, Shaw 的比较,
8 h2 y$ @: l5 F5 s+ R家用Telus 已经封锁了不少端口。 也随时不通知下说锁就锁, 非常讨厌。( X7 n8 _! k5 X/ ~. A' q
: I8 g+ G9 V5 ?' x5 `/ B8 z ?Does Telus block any ports? & C7 `! ^( B4 `# w4 S, ?
" ~6 q0 y0 [ j# ^* ^The only packages with no blocked ports at this time are the Server packages. ! x7 ] M7 K+ V+ s
3 H( a+ x3 I0 R: j' v# j
The Blocked ports currently are:
# ^$ H C* ], C4 i2 D% u% p% c8 s! r
TCP 21 (ftp)! T7 X; {% Y% q+ r0 @8 H" w+ {
Customers running an FTP server will no longer be able to have Internet users connect to their server. Many customers computers are used as FTP servers to store illegal files./ C6 w3 ~$ a# ^2 D" S
4 c! B( y: E* @( X B E
TCP 25 (smtp)
i. |* t9 V7 m4 ACustomers running a SMTP mail server will no longer be able to receive email requests. Also, Telus users will not be able to connect to non-Telus smtp servers on port 25. Prevent mail servers that operate as an open relay. Open relays are used without a customer?s knowledge to sends millions of pieces of Spam.
! Y! G4 u2 `. Y- y4 i
& X1 W* _4 ~) d1 Q: f" E$ ATCP 80 (www)2 n+ `& E( D3 d) l F" I
Customers running a Web server will no longer be able to have Internet users connect to their server. Common exploit on old Window IIS server and Linux boxes that are not properly patched.- ]/ i$ ^5 K9 J, t
6 K7 |: }& ^4 h$ Y. g
TCP 110 (pop3)
! O* W3 z P8 \4 Q& J: JCustomers running a POP mail server will no longer be able to have Internet users connect to the server. Prevent mail servers that operate as an open relay. Open relays are used without a customer?s knowledge to sends millions of pieces of Spam.8 Q( t( H: `1 l2 ]
) d% s7 q5 ^! _0 k3 P8 R7 hTCP 6667 (ircd)
! i. Z0 m' j3 l$ eCustomers running a IRC server (Internet Relay Chat) will no longer be able to have Internet users connect to the server.
7 b% S2 u7 X U, E0 c% M) y
3 I4 |! l. Y& r+ b# D$ |2 UTCP/UDP 135-139 (dcom and netbios)( a( _& y! }8 P% [4 I2 V
These ports are commonly exploited by worm viruses:6 T3 S5 i' W+ E. b* X/ B R: } H
135 Windows RPC
9 K' m. M( e0 O1 `. K! j# N8 k136 PROFILE Naming System (basically unused)
# Y9 T2 ?0 f/ |137-139 Windows NetBios
H" U; @+ D% i
! L9 x+ `( x, [7 O& XTCP/UDP 445 (ms-ds)4 V* E. A3 y# j8 Q* ^0 P
Microsoft Directory Services - Customers that allow legitimate Internet users access to their computers will loose this ability. This allows hackers to directly connect to a Windows based computer and gain total control over the OS.
: L8 O2 s+ l0 _9 o$ r7 ]# ~/ T. @) Q9 V) s& X
TCP/UDP 1433-1434 (ms-sql)* a1 X# x- Q5 ]* Y5 x/ g) h
Microsoft SQL server - Customer running an SQL server will no long be able to have Internet user connect to their server. There are several worm viruses that exploit holes in SQL server. |
|