PDA

View Full Version : port security


nitro rig driver
30th Jan 2004, 20:09
have just installed the norton security 2004 package and performed one of those security tests that they provide from thier web site

it came back saying that port135 was open
how do i change this port to stealth as every other port is
i run windows xp home if it helps

have installed the disc on the laptop and everything is stealthy
cheers

Naples Air Center, Inc.
31st Jan 2004, 00:27
nitro rig driver,

Port 135 is certainly not a port that needs to be, or should be, exposed to the Internet. Hacker tools such as "epdump" (Endpoint Dump) are able to immediately identify every DCOM-related server/service running on the user's hosting computer and match them up with known exploits against those services. Any machines placed behind a NAT router (any typical residential or small business broadband IP-sharing router) will be inherently safe. And any good personal software firewall should also be able to easily block port 135 from external exposure. That's what you want.

In addition, many security conscious ISPs are now blocking port 135 along with the notorious "NetBIOS Trio" of ports (137-139). So even without any of your own proactive security, you may find that port 135 has been blocked and stealthed on your behalf by your ISP.

From Microsoft:

COM Security Frequently Asked Questions (http://support.microsoft.com/support/kb/articles/Q158/5/08.asp&NoWebContent=1&NoWebContent=1&NoWebContent=1)

You will find additional ways to disable the port in the link above.

Take Care,

Richard

slj
1st Feb 2004, 01:38
Nitro

Have a look at http://grc.com/default.htm for some useful tools re ports and others.