|
Posted by Jose Maria Lopez Hernandez on March 13, 2005, 6:45 pm
If you were Registered and logged in, you could reply and use other advanced thread options
Yef wrote:
> Hi all,
>
> Having noticed that Windows allows me to block ports
> that I don't want in use, via the TCP filtering feature
> in Network settings -> TCP -> properties -> advanced,
> I now desire to block those ports and protocols which
> I don't need. The question is which ones.
>
> I use ftp, http, https, pop3, smtp, and dhcp. I periodically
> also use the Real player.
>
> Using the handy dandy Dave's port list, it seems that I need
> the following (TCP) ports.
>
> It's not clear to be when UDP are used by these services.
>
> ftp : 20,21
> http : 80
> https : 443
> pop3 : 110
> smtp : 25
None of them use UDP, but don't forget the DNS service,
that uses 53/udp and 53/tcp (this one only for zone transfers).
> I'm not so sure about these:
>
> dhcp : ???
67/udp 68/udp
> real player : ???
I think it's 7070/tcp 554/tcp 1090/tcp, but I have not tested well.
> Assuming that I can get a complete list, will this work?
It should work.
> Also, do I need to enable NetBIOS?
Never let NetBIOS go in or out your machine and the Internet. It's
a big security problem if you do so. You have to stop it at the
firewall.
> Thanks.
>
Regards.
--
Jose Maria Lopez Hernandez
Director Tecnico de bgSEC
jkerouac@bgsec.com
bgSEC Seguridad y Consultoria de Sistemas Informaticos
http://www.bgsec.com ESPAŅA
The only people for me are the mad ones -- the ones who are mad to live,
mad to talk, mad to be saved, desirous of everything at the same time,
the ones who never yawn or say a commonplace thing, but burn, burn, burn
like fabulous yellow Roman candles.
-- Jack Kerouac, "On the Road"
|