![]() | |
|
Welcome to the ABXZone Computer Forums forums. You are currently viewing our boards as a guest which gives you limited access to view most discussions and access our other features. By joining our free community you will have access to post topics, communicate privately with other members (PM), respond to polls, upload content and access many other special features. Registration is fast, simple and absolutely free so please, join our community today! If you have any problems with the registration process or your account login, please contact contact us. |
![]() |
| | LinkBack | Thread Tools | Display Modes |
| | #46 | |
| Registered User Join Date: Nov 2003
Posts: 13,497
| Quote:
| |
| (Offline) | |
| | #47 |
| MD of Technology Join Date: Nov 2002 Location: Canada
Posts: 604
| hmm... I see. If I have an open port for a given app in my router, but also have a software firewall, can ONLY the program destined for that port use communicate, or can an attacker get through? I would think that my software firewall blocks these, as I get occasional security intrusion attempts on opened ports, logged by NIS.
__________________ Azproc ASUS P5W DH Deluxe - 1101 - Intel Core 2 Duo E6400 - 2x512MB OCZ PC2-5400 Gold XTC 4-4-4-12 - Seagate 7200.10 320GB - soon to be replaced ASUS EN5750 128MB - Thermaltake TR2 430W - 17 Samsung 710N - XP Pro SP2 Gigabyte GA-8KNXP - F12 - Intel P4 2.4C HT @ 2.88GHz, 240MHz Clock using 5/4 - 2X512MB OCZ Plat. 3200 Dual running 2/3/2/5 - SB LIVE 5.1 - Seagate SATA 120GB - former ATI (BBA) X850XT @ 554/591 - now XFX 7800GS Xtreme @ 460/1350 Thermaltake 480W FC - 20.1 Viewsonic VX2025WM LCD - XP Pro SP2 - 3DMARK 03/05/05 = 11708/5739/5860 |
| (Offline) | |
| | #48 |
| The race for quality has no finish line- so technically, it's more like a death march. ![]() Join Date: Feb 2001
Posts: 18,159
| In case you wanted to lookup the ports being scanned, this link will tell you what the expected usage of the port is: http://www.iana.org/assignments/port-numbers Run netstat -a at the command prompt to get an idea of what ports are currently active on your computer. |
| (Offline) | |
| | #49 |
| MD of Technology Join Date: Nov 2002 Location: Canada
Posts: 604
| Thanks for the link... a good favourite to add....
__________________ Azproc ASUS P5W DH Deluxe - 1101 - Intel Core 2 Duo E6400 - 2x512MB OCZ PC2-5400 Gold XTC 4-4-4-12 - Seagate 7200.10 320GB - soon to be replaced ASUS EN5750 128MB - Thermaltake TR2 430W - 17 Samsung 710N - XP Pro SP2 Gigabyte GA-8KNXP - F12 - Intel P4 2.4C HT @ 2.88GHz, 240MHz Clock using 5/4 - 2X512MB OCZ Plat. 3200 Dual running 2/3/2/5 - SB LIVE 5.1 - Seagate SATA 120GB - former ATI (BBA) X850XT @ 554/591 - now XFX 7800GS Xtreme @ 460/1350 Thermaltake 480W FC - 20.1 Viewsonic VX2025WM LCD - XP Pro SP2 - 3DMARK 03/05/05 = 11708/5739/5860 |
| (Offline) | |
| | #50 | |
| Registered User Join Date: Nov 2003
Posts: 13,497
| Quote:
| |
| (Offline) | |
| | #51 | |
| Registered User Join Date: Sep 2001
Posts: 82
| Quote:
are you saying is that every web site, every mail server, every machine out there with an open port could easily be broken into if just someone wanted to? my bank has port 80 and 443 open on their web server. i have port 25 and 80 open on my computer. how do you get access now? hint: read above where i talked about applications _and_ the necessity to have a security hole in that application. edit: added the first part of the sentence to the quote. a port is only open if an application is listening on it. if you don't run a trojan, then the port must have been opened by some other program and even then this program would have to have a security hole to pose a threat. | |
| (Offline) | |
| | #52 | |
| MD of Technology Join Date: Nov 2002 Location: Canada
Posts: 604
| Quote:
__________________ Azproc ASUS P5W DH Deluxe - 1101 - Intel Core 2 Duo E6400 - 2x512MB OCZ PC2-5400 Gold XTC 4-4-4-12 - Seagate 7200.10 320GB - soon to be replaced ASUS EN5750 128MB - Thermaltake TR2 430W - 17 Samsung 710N - XP Pro SP2 Gigabyte GA-8KNXP - F12 - Intel P4 2.4C HT @ 2.88GHz, 240MHz Clock using 5/4 - 2X512MB OCZ Plat. 3200 Dual running 2/3/2/5 - SB LIVE 5.1 - Seagate SATA 120GB - former ATI (BBA) X850XT @ 554/591 - now XFX 7800GS Xtreme @ 460/1350 Thermaltake 480W FC - 20.1 Viewsonic VX2025WM LCD - XP Pro SP2 - 3DMARK 03/05/05 = 11708/5739/5860 | |
| (Offline) | |
| | #53 | |
| Registered User Join Date: Sep 2001
Posts: 82
| Quote:
| |
| (Offline) | |
| | #54 |
| MD of Technology Join Date: Nov 2002 Location: Canada
Posts: 604
| I have "open" ports in my software firewall (ie port 80)... Yes the router uses "forwarded ports".
__________________ Azproc ASUS P5W DH Deluxe - 1101 - Intel Core 2 Duo E6400 - 2x512MB OCZ PC2-5400 Gold XTC 4-4-4-12 - Seagate 7200.10 320GB - soon to be replaced ASUS EN5750 128MB - Thermaltake TR2 430W - 17 Samsung 710N - XP Pro SP2 Gigabyte GA-8KNXP - F12 - Intel P4 2.4C HT @ 2.88GHz, 240MHz Clock using 5/4 - 2X512MB OCZ Plat. 3200 Dual running 2/3/2/5 - SB LIVE 5.1 - Seagate SATA 120GB - former ATI (BBA) X850XT @ 554/591 - now XFX 7800GS Xtreme @ 460/1350 Thermaltake 480W FC - 20.1 Viewsonic VX2025WM LCD - XP Pro SP2 - 3DMARK 03/05/05 = 11708/5739/5860 |
| (Offline) | |
| | #55 | ||
| Registered User Join Date: Sep 2001
Posts: 82
| Quote:
let's see. Quote:
edit: after thinking some more i can only guess what PCB meant. when a computer initiates a connection to another computer, then it uses a source port for that connection. so when you connect with your browser to host1 port 80, the connection might look like yourip:65432 -> host1:80. that does NOT mean that port 65432 on your computer is "open" in the sense that it is set to the LISTEN state and accepts connections from the outside. Last edited by TCM : 10-11-2004 at 06:36 PM. | ||
| (Offline) | |
| | #56 | |
| Registered User Join Date: Sep 2001
Posts: 82
| Quote:
in effect, the port is still closed when probed from the outside, i.e. the operating system's network stack replies with RST. | |
| (Offline) | |
| | #57 |
| MD of Technology Join Date: Nov 2002 Location: Canada
Posts: 604
| Notice that I say that I have a program accessing that port in addition to having it "open" or "forwarded" for the lack of any arguments.
__________________ Azproc ASUS P5W DH Deluxe - 1101 - Intel Core 2 Duo E6400 - 2x512MB OCZ PC2-5400 Gold XTC 4-4-4-12 - Seagate 7200.10 320GB - soon to be replaced ASUS EN5750 128MB - Thermaltake TR2 430W - 17 Samsung 710N - XP Pro SP2 Gigabyte GA-8KNXP - F12 - Intel P4 2.4C HT @ 2.88GHz, 240MHz Clock using 5/4 - 2X512MB OCZ Plat. 3200 Dual running 2/3/2/5 - SB LIVE 5.1 - Seagate SATA 120GB - former ATI (BBA) X850XT @ 554/591 - now XFX 7800GS Xtreme @ 460/1350 Thermaltake 480W FC - 20.1 Viewsonic VX2025WM LCD - XP Pro SP2 - 3DMARK 03/05/05 = 11708/5739/5860 |
| (Offline) | |
| | #58 | |
| Registered User Join Date: Sep 2001
Posts: 82
| Quote:
your general confusion with basic terms makes it hard to understand what you mean and it shows a huge deficiency in understanding of concepts. really, making it necessary to correct every statement due to misuse of basic terms prevents any real discussion. | |
| (Offline) | |
| | #59 | |
| Enjoying the discourse! Join Date: Jan 2004
Posts: 3,519
| Quote:
__________________ La la la la la...I'm lovin it! Bigmac please | |
| (Offline) | |
| | #60 |
| Who me??? Join Date: Jun 2003 Location: Vancouver, Canada
Posts: 325
| The best and easiest way to stealth all of your ports and get a perfect rating at Shields Up!! is to enable DMZ on your router and point it to a non-existent IP address in the range of your gateway but NOT one of the IP's on your LAN.
__________________ MY MACHINE : Intel Q6600 | ASUS Maximus Premium | 8GB G.SKILL DDR2-1000 | EVGA 8800GTS 512mb | X-Fi Platinum | Enermax Infiniti 720 | Samsung 245BW 24" KIDS MACHINE : Intel Xeon 3060 | Intel BadaXe2 | 4GB Team Xtreem DDR2-800 | BFG 8800GT OC | Audigy 2 ZS | OCZ GameXStream 850 | Samsung 204B 20" |
| (Offline) | |
![]() |
| Thread Tools | |
| Display Modes | |
| |