Firewall Wizards mailing list archives

Re: Strange open ports on windows machines


From: "Michael H. Warfield" <mhw () wittsend com>
Date: Mon, 25 Oct 1999 14:22:24 -0400

On Mon, Oct 25, 1999 at 10:44:38AM -0700, Kaptain wrote:
<snip>
    Even without BO there, with ports 135-139 tcp and udp open to
access you have all the security of a tissue in a hurricane.

Cheers,
Christoph Schneeberger
SCS Telemedia

    Mike
</snip>


How can you disable the public accessibility of the 135-139 windows ports?

        One word:  Firewall.

        Block all access to those ports from anything outside or your site.

        I think there may also be some filtering code available, but,
since I don't use it, I don't know anything about it.

        BTW...  For those of you playing with Windows 2000, add port 445
to the list of things that should be blocked from outside contact.  You
can do the same sorts of things with port 445 that you can with port 135.

-K

        Mike
-- 
 Michael H. Warfield    |  (770) 985-6132   |  mhw () WittsEnd com
  (The Mad Wizard)      |  (770) 331-2437   |  http://www.wittsend.com/mhw/
  NIC whois:  MHW9      |  An optimist believes we live in the best of all
 PGP Key: 0xDF1DD471    |  possible worlds.  A pessimist is sure of it!



Current thread: