RE: Safe_ports - how to deal with ones not listed?

From: Dave J Woolley <DJW@dont-contact.us>
Date: Thu, 25 Nov 1999 12:04:01 -0000

> From: Miguel A.L. Paraz [SMTP:map@iphil.net]
>
> Since we're an ISP we follow a "allow all deny some" policy. I think the
> problem ports are the likes of chargen, no? So I allowed 81-65535.
>
        chargen is an irritation. The problem ports are the
        like of SMTP.

        Basically, if you would have problems if you were accused
        of hacking the port from a user on your proxy, then it
        is unsafe.

        Taking SMTP, if you don't mind receiving large volumes of
        abuse@ mail (and ending up on the ORBS blacklist) port 25
        is safe.

        If you have any doubts about your ability to trace a responsible
        origin ISP for the users of your cache, nearly everything below
        1024 is unsafe.
Received on Thu Nov 25 1999 - 05:17:28 MST

This archive was generated by hypermail pre-2.1.9 : Wed Apr 09 2008 - 11:57:32 MDT