Re: Strange ports



Hi Killy,

I am not sure if even port 53 needs to be open, It all depends on what service do you want to offer to the world. so you need to see if your organizations is offering this service to the world e.g. 3389 terminal service for the world to see ? you may need to contact some one in your organizations to ask if they need those services from the internet ?

Hope i have been of some help.

Regards
Zion


killy wrote:
Scanning my external firewall(at work), I (yes, it is my job to) find this:


PORT STATE SERVICE
53/tcp open domain

1029/tcp open ms-lsa
1032/tcp open iad3

3389/tcp open ms-term-serv


Why would 1029 and 1032 need to be open from the outside?

-Kill



------------------------------------------------------------------------
This List Sponsored by: Cenzic

Are you using SPI, Watchfire or WhiteHat?
Consider getting clear vision with Cenzic
See HOW Now with our 20/20 program!

http://www.cenzic.com/c/2020
------------------------------------------------------------------------



Relevant Pages

  • Re: SPI on the User Port ... Mode Hang-Ups.
    ... hard pressed to give up their RS232 port for this, ... Ethernet cart, or they have a cardreader on a PC/Linux box on the net ... registers between an SPI interface and a RS-232C interface, ...
    (comp.sys.cbm)
  • Re: Stateful Packet Inspection Firewall
    ... you need a router with NAT to establish multiple machines to use one public ... An SPI firewall will help to keep out hackers/crackers and you will ... not application based but port based. ...
    (comp.security.firewalls)
  • Re: Software vs. hardware firewalls
    ... > I think you should reverse your thinking on that. ... > Now, the latest version of the Linksys firmware SPI has been removed, ... > to map specified port traffic to a specified IP/machine needing the port ...
    (comp.security.firewalls)
  • Re: Software vs. hardware firewalls
    ... If you're not that Thor, ... >> Now, the latest version of the Linksys firmware SPI has been removed, ... SPI has never worked right on any of the Linksys firmware. ... >> to map specified port traffic to a specified IP/machine needing the port ...
    (comp.security.firewalls)
  • Re: Software vs. hardware firewalls
    ... >>What advantage does a hardware firewall like the Linksys BEFSR41 ... Now, the latest version of the Linksys firmware SPI has been removed, ... because that were having too many issues implementing SPI into the firmware. ... By using Port Forwarding or Triggering, you will be able to tell the router ...
    (comp.security.firewalls)