 鲜花( 87)  鸡蛋( 1)
|
之前发过一个帖子有关Telus, Shaw 的比较,
9 z3 j B" s7 y$ M; `家用Telus 已经封锁了不少端口。 也随时不通知下说锁就锁, 非常讨厌。
2 ~; f# c5 X' t: M! ^" O
8 c; J- |. |) g5 IDoes Telus block any ports? 6 }6 s: t7 s0 ]1 z Z1 U
. Z2 @2 ~4 f G+ qThe only packages with no blocked ports at this time are the Server packages.
' v% G( j' r1 r* w" i t: e8 d8 f+ N
The Blocked ports currently are:$ q. O4 j' S, n6 @$ T# [
7 ^9 J" u4 i( c: Z* S4 U' K
TCP 21 (ftp)
! D' }/ A/ L! e5 Y GCustomers running an FTP server will no longer be able to have Internet users connect to their server. Many customers computers are used as FTP servers to store illegal files.& n9 M- k" D' t2 T+ n
4 q+ A9 q0 X1 ^, s$ f8 k+ }- f. U
TCP 25 (smtp), r( u7 k) p5 H' G8 d% X
Customers running a SMTP mail server will no longer be able to receive email requests. Also, Telus users will not be able to connect to non-Telus smtp servers on port 25. Prevent mail servers that operate as an open relay. Open relays are used without a customer?s knowledge to sends millions of pieces of Spam.
* ^9 {) y: J+ O! p; _% @/ q. l! e- a
TCP 80 (www)
' f1 R$ q9 K, F, q& k. u, f/ e' QCustomers running a Web server will no longer be able to have Internet users connect to their server. Common exploit on old Window IIS server and Linux boxes that are not properly patched.0 d% T" O) R1 l6 U U$ F
2 r) n$ i3 } j# p+ a
TCP 110 (pop3): V: Q! n( r8 X/ T& G ?
Customers running a POP mail server will no longer be able to have Internet users connect to the server. Prevent mail servers that operate as an open relay. Open relays are used without a customer?s knowledge to sends millions of pieces of Spam.& D- ~3 I; T/ t, C2 N
9 ~9 y7 h5 v0 a
TCP 6667 (ircd)3 V0 R& G/ Z. A# m) t; J, {7 l$ D% ~1 t
Customers running a IRC server (Internet Relay Chat) will no longer be able to have Internet users connect to the server.
: s; E8 K# U! X( }, Q# U+ U
5 H( U7 V) e; F% L& STCP/UDP 135-139 (dcom and netbios)
; J4 F4 r/ Q1 o5 x* |3 u$ q: nThese ports are commonly exploited by worm viruses:
) k! U% k6 m' C* g135 Windows RPC: P& R& V& S$ v5 h; S- W4 Q+ ~1 I( T
136 PROFILE Naming System (basically unused)! J) J& [3 U8 U# C# p
137-139 Windows NetBios
% a) }7 A' T, W" G( V& l7 G M2 a. H9 `: C9 |* d$ A
TCP/UDP 445 (ms-ds)
0 n/ R" m3 M$ s aMicrosoft Directory Services - Customers that allow legitimate Internet users access to their computers will loose this ability. This allows hackers to directly connect to a Windows based computer and gain total control over the OS.
; S+ n* t7 j E' e+ a3 ]4 F5 ~0 n- n0 p' f5 B$ N2 E
TCP/UDP 1433-1434 (ms-sql). p2 q9 N) f+ w! v2 J) x
Microsoft SQL server - Customer running an SQL server will no long be able to have Internet user connect to their server. There are several worm viruses that exploit holes in SQL server. |
|