Re: vulnerable ports

Tech Tip: Click here to run a free scan for Windows Errors and optimize PC performance



Hi,

Is this computer behind firewall or is directly exposed to the internet?

What service is running on the computer that is using RPC? Even when using
RPC some applications allow you to statically define TCP ports that it will
use for connections to the server. This can make configuration of the
firewall a bit easier.

Note: It is not ports that are vulnerable, but services that run behind that
port. Here are few things that you should do if you need to secure your
server:
* patch the server with latest updates
* shut down all unnecessary services (which will close unnecessary ports);
to do this correctly you will have to know what is running on the server and
what you really need from your server
* securely configure services that need to run on the server (e.g. IIS, DNS,
....)

--
Mike
Microsoft MVP - Windows Security

"Dhilip" <Dhilip@xxxxxxxxxxxxxxxxxxxxxxxxx> wrote in message
news:64E1D748-B4D6-4A3F-ABEE-CF73C88E1A6F@xxxxxxxxxxxxxxxx
> Hello,
> I am using an application which uses RPC. At the same time I want to use
> IPSec to avoid the security attacks. Now I dissabled all the unwanted
> ports,
> so the application is not working. Since RPC dont use a single port I cant
> enable a single port. Will you please tell me the way to solve this
> problem.
> Is there any list of vulnerable ports? Is it enough to close those ports
> alone to solve the security issue? If yes please give me link where I can
> get
> the details.
>
> Thank you.
> Dhilip


.



Relevant Pages

  • Re: dcpromo failed
    ... way to lock rpc down to specific ports and keep high ports turned off. ... MVP - Directory Services ... I disjoined the server from the domain. ...
    (microsoft.public.windows.server.active_directory)
  • Re: Interesting webserver intrusion (apache 1.3.31, mod_ssl 2.8.18, php 4.3.7)
    ... > fairly tight(only allowing 4 ports in), but perhaps I could tighten it ... The host systems firewall rules govern the access to the jailed system. ... What connections does your server need to ... Perhaps there is a 0-day for your ftp server out there. ...
    (Incidents)
  • Re: Add 2nd NIC after intial install?
    ... My biggest question with 1 NIC is: even if workstations are protected with individual firewall products, what is protecting the SBS server itself if ports are open for remote access through the Linksys firewall? ...
    (microsoft.public.windows.server.sbs)
  • Re: Source Code to Filter out WindowsMessenger POP-UPS
    ... Zone Alarm does NOT support 'server'. ... Very few ports are open, ... >What you are asking for amounts to a firewall. ... I would NOT search for source code to compile ...
    (microsoft.public.inetserver.iis.security)
  • Re: Using Office Outlook with exchange server behind windows firewall
    ... On our network I have windows firewall turned on, on both my small business server and my windows xp workstations. ... Based on an article I read about all the ports that exhange may use I also tried making exceptions for ports ...
    (microsoft.public.windows.server.sbs)