Re: PORTS

From: Jem Berkes (jb2002_padding_@pc9.org)
Date: 05/30/02


From: Jem Berkes <jb2002_padding_@pc9.org>
Date: Thu, 30 May 2002 02:16:42 GMT


> I did a scan on my sytem and found 110 ports were open. What's the
> best way to learn how to close ports that aren't being used and
> tighten up security. I'm running Small Business Server, WIN2K.

This is a simple process:

1. Determine which ports should be legitimately open. One for each service.
e.g. SMTP mail = 25, web server = 80, etc.

2. Close all remaining ports

For WIN2K, this will involve uninstalling or disabling software that is
running on additional ports. Also a good idea is to install a firewall to
block access to all ports except the expected ones.

-- 
Jem E. Berkes
Student IEEE (Winnipeg)

http://www.pc-tools.net/ Windows, Linux & UNIX software



Relevant Pages

  • Re: Win2K FireWall
    ... >> Well,if you're not concerened about outbound protection, then it may ... I looked at Win2k FW and it didn't seem that bad. ... >> well as any other host based FW. ... > that listen on various ports and may thus be hackable. ...
    (comp.security.firewalls)
  • Re: [OT] Win2k blocks ports to my ISPs pop3 & smtp
    ... I recommend downloading wireshark for win2k. ... smtp respective ports, though it can ping them without problem. ... PS. plz don't flame this poor guy in this terrible situation. ... To UNSUBSCRIBE, email to debian-user-REQUEST@xxxxxxxxxxxxxxxx ...
    (Debian-User)
  • Re: Win2K FireWall
    ... Duane Arnold wrote: ... I looked at Win2k FW and it didn't seem that bad. ... Just a thought - a lot of these procedures are to disable services that ... listen on various ports and may thus be hackable. ...
    (comp.security.firewalls)
  • RE: Win2k - Multiple internet sources info
    ... Win2k - Multiple internet sources info ... i think that you will have problems splitting up ports like you want to... ...
    (Security-Basics)
  • Re: Firewalls offer no REAL outbound protection????
    ... At least, on my Win2K ... There is a known bug in Win2K netstat, showing ports as "listening" ...
    (comp.security.firewalls)