 鲜花( 87)  鸡蛋( 1)
|
之前发过一个帖子有关Telus, Shaw 的比较, - a2 `0 ]4 X U6 C
家用Telus 已经封锁了不少端口。 也随时不通知下说锁就锁, 非常讨厌。5 g( j' D* ^# k3 ~
/ c z1 v* g4 I9 r( GDoes Telus block any ports? - T/ c( s/ y8 {) I6 i
' K- ?" o6 z8 o, i7 [- HThe only packages with no blocked ports at this time are the Server packages. ; R8 t: a" ^0 N) p/ A, G6 I4 o8 E- P
2 x- o: W7 q, d5 M& FThe Blocked ports currently are:; ^# m. N7 x$ [2 S1 M' k+ S8 a
6 k& ^5 i: \- U2 M5 Y- hTCP 21 (ftp)* d/ M+ F% P( g! h3 M" k
Customers running an FTP server will no longer be able to have Internet users connect to their server. Many customers computers are used as FTP servers to store illegal files.
; I/ X, d* J8 |8 K& L; v
; [9 `0 u7 `6 o* TTCP 25 (smtp)
d! p& ^7 Y6 S4 y, x: T( _. `Customers running a SMTP mail server will no longer be able to receive email requests. Also, Telus users will not be able to connect to non-Telus smtp servers on port 25. Prevent mail servers that operate as an open relay. Open relays are used without a customer?s knowledge to sends millions of pieces of Spam.
5 |# `2 W& v5 [2 e" g4 [, S
; t+ S3 J9 C- E5 _2 [TCP 80 (www)
6 e4 f' O9 i. ~& ~6 s; eCustomers running a Web server will no longer be able to have Internet users connect to their server. Common exploit on old Window IIS server and Linux boxes that are not properly patched.- j0 d- }2 U% w2 J
* L% h& u7 N% Z0 R* q& n U
TCP 110 (pop3)# p& H& M$ c* y
Customers running a POP mail server will no longer be able to have Internet users connect to the server. Prevent mail servers that operate as an open relay. Open relays are used without a customer?s knowledge to sends millions of pieces of Spam.
9 N& G) R# ~! g8 t
; i8 n6 C9 u! D9 T) QTCP 6667 (ircd)
' V- w" e+ O% q1 x& `- OCustomers running a IRC server (Internet Relay Chat) will no longer be able to have Internet users connect to the server.5 X" Z2 C/ Z( ]
6 [6 w' E) s5 p9 B
TCP/UDP 135-139 (dcom and netbios)
) I8 o' e5 u; G, fThese ports are commonly exploited by worm viruses:8 g; c- P! I5 T, p! E6 X& V
135 Windows RPC1 r1 c) ^4 ]2 ]+ M% H" N5 U5 x+ J$ t
136 PROFILE Naming System (basically unused); e$ c& N( u, }2 _. i) L9 {
137-139 Windows NetBios4 F7 e. G( O% v% B0 D
- B/ m: h/ P4 W
TCP/UDP 445 (ms-ds)
. O" c) {; y/ o/ xMicrosoft Directory Services - Customers that allow legitimate Internet users access to their computers will loose this ability. This allows hackers to directly connect to a Windows based computer and gain total control over the OS.
. G, P+ f* Y& Q) u9 _
8 O3 T, ?* S3 ^$ D$ w, @TCP/UDP 1433-1434 (ms-sql)
! C$ I, \7 u) c1 H3 L6 \) vMicrosoft SQL server - Customer running an SQL server will no long be able to have Internet user connect to their server. There are several worm viruses that exploit holes in SQL server. |
|