 鲜花( 87)  鸡蛋( 1)
|
之前发过一个帖子有关Telus, Shaw 的比较, & w U K9 n4 D+ j
家用Telus 已经封锁了不少端口。 也随时不通知下说锁就锁, 非常讨厌。2 A+ d' R e' V& _4 A9 j; x
' c% y: l3 [& f. cDoes Telus block any ports? 4 X4 v1 C" s' \3 m
$ _: R! d" T8 }0 {# nThe only packages with no blocked ports at this time are the Server packages.
9 L+ h6 ?8 A2 ^0 |1 l4 P3 |( s; J! p3 f! u1 ?; R/ h! G$ o
The Blocked ports currently are:+ T4 d$ v0 v- }. M$ E( l& {
1 X. Y# S% d$ D8 _* sTCP 21 (ftp)6 v u0 T0 B6 R
Customers running an FTP server will no longer be able to have Internet users connect to their server. Many customers computers are used as FTP servers to store illegal files.. n; F- M1 V2 X G% P1 @9 Z n
: J+ i! N5 Q: }
TCP 25 (smtp)# Z8 k$ ?) I0 R8 C8 W
Customers running a SMTP mail server will no longer be able to receive email requests. Also, Telus users will not be able to connect to non-Telus smtp servers on port 25. Prevent mail servers that operate as an open relay. Open relays are used without a customer?s knowledge to sends millions of pieces of Spam. F' X* O! `6 Y4 U0 E$ |
7 H; _9 ]" }6 i& o5 ?* ]4 fTCP 80 (www)& O5 G% b8 h( L& W6 d
Customers running a Web server will no longer be able to have Internet users connect to their server. Common exploit on old Window IIS server and Linux boxes that are not properly patched.
; `1 Y% g& v. V0 \) B/ s3 T' B: M6 J
TCP 110 (pop3)- s6 ^- h) f q: K L; i
Customers running a POP mail server will no longer be able to have Internet users connect to the server. Prevent mail servers that operate as an open relay. Open relays are used without a customer?s knowledge to sends millions of pieces of Spam.5 m' v' f5 c5 T# ^1 D# j4 j7 @/ U
% _+ p. b$ e# p1 XTCP 6667 (ircd)
- }' Z+ A' S/ B$ r7 ]7 Z" RCustomers running a IRC server (Internet Relay Chat) will no longer be able to have Internet users connect to the server.7 E( R9 c- G- K3 l' a+ n
# H8 x1 @, ]2 u% s" F3 x& I* WTCP/UDP 135-139 (dcom and netbios)2 ^* E* i* X* ?; l/ A" c2 ^# P
These ports are commonly exploited by worm viruses:2 R( n3 U+ Z, s7 Y& N# h _
135 Windows RPC- N- t; x) S3 w4 J( O0 s
136 PROFILE Naming System (basically unused)4 n; U% ~7 l) z5 B: h% ], n6 [ c
137-139 Windows NetBios( M7 e1 ~! `* x
8 b6 F2 D' R- X+ [# }* }: g0 iTCP/UDP 445 (ms-ds)( _: Y+ l- M; l( |
Microsoft Directory Services - Customers that allow legitimate Internet users access to their computers will loose this ability. This allows hackers to directly connect to a Windows based computer and gain total control over the OS.9 a9 l5 p7 O1 j# a
- j3 F' ~5 y9 ?" DTCP/UDP 1433-1434 (ms-sql)" F) f# E( ^/ o: P. O6 V
Microsoft SQL server - Customer running an SQL server will no long be able to have Internet user connect to their server. There are several worm viruses that exploit holes in SQL server. |
|