[DCN-TechOps] Port Blocking Proposal

Steve McMahon steve at dcn.org
Wed Sep 10 13:22:18 PDT 2003


Hi TechOps,

I don't know to what extent DCN/Omsoft are now blocking ports, but 
thought this deserved discussion:

 From today's SANS Newsbites:

  --ISPs Could Block Ports to Reduce Spread of Malware
(8 September 2003)
A report written by Johannes Ullrich, SANS Internet Storm Center CTO,
proposes that Internet service providers (ISPs) block access to
"commonly exploited" communications ports on customers' computers.
While it would not prevent all Internet threats, it could address a bulk
of the problems.  The four ports, 135, 137, 139 and 445, are not
necessary for most Internet use.  The proposal is aimed at ISPs that
serve individual customers and universities, not those that serve
corporate customers.
http://www.nwfusion.com/edge/news/2003/0908studyisps.html
http://www.sans.org/rr/special/isp_blocking.pdf

-- 
______________________________________________________

Steve McMahon
Reid-McMahon, LLC
steve at reidmcmahon.com
steve at dcn.org




More information about the DCN-Technical-Committee mailing list