houseisland
August 29th, 2006, 12:28 PM
Hi,
I need some help here interpretting the results of a port scan on a router/firewall.
Behind the router there is a mail server, a web server, and a terminal server.
There is a VPN tunnel set up.
And remote administration is enabled (dumb, but not my choice).
The common ports I am familiar with and understand why they are open.
Open ports:
25/tcp open smtp
80/tcp open http
135/tcp filtered msrpc
137/tcp filtered netbios-ns
138/tcp filtered netbios-dgm
139/tcp filtered netbios-ssn
443/tcp open https
445/tcp filtered microsoft-ds
593/tcp filtered http-rpc-epmap
1723/tcp open pptp
2555/tcp open unknown
3000/tcp open ppp
3389/tcp open ms-term-serv
5554/tcp filtered unknown
8080/tcp open http-proxy
9996/tcp filtered unknown
Thanks.
I need some help here interpretting the results of a port scan on a router/firewall.
Behind the router there is a mail server, a web server, and a terminal server.
There is a VPN tunnel set up.
And remote administration is enabled (dumb, but not my choice).
The common ports I am familiar with and understand why they are open.
Open ports:
25/tcp open smtp
80/tcp open http
135/tcp filtered msrpc
137/tcp filtered netbios-ns
138/tcp filtered netbios-dgm
139/tcp filtered netbios-ssn
443/tcp open https
445/tcp filtered microsoft-ds
593/tcp filtered http-rpc-epmap
1723/tcp open pptp
2555/tcp open unknown
3000/tcp open ppp
3389/tcp open ms-term-serv
5554/tcp filtered unknown
8080/tcp open http-proxy
9996/tcp filtered unknown
Thanks.