Re: Commonly Exploited Ports

From: Brendan DJ Murphy (brendan_at_cpac.REMOVE.org.uk)
Date: 09/29/04


Date: Wed, 29 Sep 2004 15:54:13 +0100

Interesting question...

The top rule on my list is to block a range of incoming packets for the
following local ports:

135
445
520
1025
1026
1027
1028
1029

Cant guarantee that this is the definitive list, but it filters out most
unwanted incoming packets.

I have kerio configured to ask me if a packet does not match any rule. Its
been a long time since I have been asked.

Brendan