I also think that most good network citizens should be egress blocking those
ports anyway - there are precious few reasons a corporate network should be
allowing egrees traffic on those ports, or for that matter on most ports.

--------------------------------------------------------------
Roger D. Seielstad - MTS MCSE MS-MVP
Sr. Systems Administrator
Inovis Inc.


> -----Original Message-----
> From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] 
> Sent: Tuesday, August 12, 2003 7:32 PM
> To: Exchange Discussions
> Subject: Re: ISP/Exchange Question
> 
> 
> On Tue, 12 Aug 2003, at 4:52pm, [EMAIL PROTECTED] wrote:
> > Has anyone heard of the Dept. of Homeland security putting out an
> > anouncement to ISP's to block TCP/UDP ports 135, 137, 445?
> 
>   The DHS advisory doesn't target ISPs in particular.
> 
>   Many ISPs block 135, 137, 138, 139, and 445.  More have 
> started blocking
> with the exploits attacking MS03-026.  Given the number of 
> clueless lusers
> running Windows systems unprotected on the Internet, I find 
> this a pretty
> reasonable action.  Traffic on those ports really doesn't 
> have much business
> being on the public Internet in the first place.
> 
> -- 
> Ben Scott <[EMAIL PROTECTED]>
> | The opinions expressed in this message are those of the 
> author and do  |
> | not represent the views or policy of any other person or 
> organization. |
> | All information is provided without warranty of any kind.   
>            |
> 
> 
> 
> _________________________________________________________________
> List posting FAQ:       http://www.swinc.com/resource/exch_faq.htm
> Web Interface: 
> http://intm-dl.sparklist.com/cgi-bin/lyris.pl?enter=exchange&t
ext_mode=&lang=english
To unsubscribe:         mailto:[EMAIL PROTECTED]
Exchange List admin:    [EMAIL PROTECTED]

_________________________________________________________________
List posting FAQ:       http://www.swinc.com/resource/exch_faq.htm
Web Interface: 
http://intm-dl.sparklist.com/cgi-bin/lyris.pl?enter=exchange&text_mode=&lang=english
To unsubscribe:         mailto:[EMAIL PROTECTED]
Exchange List admin:    [EMAIL PROTECTED]

Reply via email to