Wilders Security Forums  

Go Back   Wilders Security Forums > Security Products > other firewalls
User Name
Password
Register FAQ Members List Calendar Search Today's Posts Mark Forums Read

 
 
Thread Tools Search this Thread
  #1  
Old February 12th, 2005, 01:35 PM
Banshee Banshee is offline
Frequent Poster
 
Join Date: Nov 2004
Posts: 529
Cool Jetico leaves ports open ?

folks,

I installed jetico and went to grc.com to test it, for some reason grc claims port 1025 is open. I also went to pcflank for another test and there, the results showed port 135 and 1025 open.


any idea how to close those ports with jetico ? I really don't understand what's causing this. I should also point out that when I first installed jettico the "system" asked for inbound access to port 445..I didn't know what to do so I blocked it.

any help appreciated
  #2  
Old February 13th, 2005, 05:22 AM
Jazzie1 Jazzie1 is offline
Regular Poster
 
Join Date: Dec 2003
Posts: 174
Default Re: Jetico leaves ports open ?

Hi, you have to create a rule to block port 135 (rpc) and I believe 445 (MS DS service) which is used for shares. For some reason Jetico didn't create a 'block all other ports and protocols' rule, most likely for the people that need those ports. But, they should have given users a choice... I tried it for a week and found it to be a good fw. But was a little concerned with the 'Optimal' rule set not blocking all other ports and protocols not currently being used. Especialy if you are on a DMZ or a stand alone workstation... Creating a rule for those ports is easy, just create a rule in the system networking section to 'reject' the packets on those ports you mention. Overall, a good fw that I will keep my eye on.

CU
Jazzie
  #3  
Old February 13th, 2005, 09:07 AM
Banshee1
 
Posts: n/a
Default Re: Jetico leaves ports open: and port 1025 ?

hello Jazzie,


thanks for your response. How did u block port 1025 ? did u make a rule for that too ?

tia
  #4  
Old February 13th, 2005, 09:16 AM
Jazzie1 Jazzie1 is offline
Regular Poster
 
Join Date: Dec 2003
Posts: 174
Default Re: Jetico leaves ports open ?

HI Banshee, that is the odd part! I didn't have to make a rule for that port. I am normally behind a spi router. I wanted to test Jetico in a 'real time' enviornment and placed myself on a DMZ without any filtering . That is where I was getting slammed with 135 and 445 inbound attempts. If you want to make a rule for that port just go to the system network side and make a rule to block (reject) inbound tcp on a single port of 1025. It should work fine...

I am currently back to CHX-I. (very good SPI packet filter).. So I can't export a rule to you...

CU
Jazzie
  #5  
Old February 13th, 2005, 11:08 PM
Kerodo's Avatar
Kerodo Kerodo is offline
Incredibly Massive Poster
 
Join Date: Oct 2004
Posts: 6,028
Default Re: Jetico leaves ports open ?

Quote:
Originally Posted by Jazzie1
Overall, a good fw that I will keep my eye on.

Jazzie

I like it too and will follow it as it changes. Right now they still seem to be making a lot of changes and fixes to it, so I'll probably wait till things settle down a little before looking at it further..
  #6  
Old February 14th, 2005, 04:01 AM
Jazzie1 Jazzie1 is offline
Regular Poster
 
Join Date: Dec 2003
Posts: 174
Thumbs up Re: Jetico leaves ports open ?

Quote:
so I'll probably wait till things settle down a little before looking at it further..


I hear you that! They are making good progress though...

CU
Jazzie
  #7  
Old February 16th, 2005, 02:13 AM
TheQuest's Avatar
TheQuest TheQuest is offline
Very Frequent Poster
 
Join Date: Jun 2003
Location: Kent. UK by the sea
Posts: 2,226
Default Re: Jetico leaves ports open ?

Hi, Banshee

Windows Worms Doors Cleaner by gkweb a Expert Firewall Tester will close them:- WWDC

Take Care,
TheQuest
__________________
When Nothing is Certain, Anything is Possible.
 

Wilders Security Forums > Security Products > other firewalls « Previous Thread | Next Thread »

Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Settings
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Forum Jump


All times are GMT -4. The time now is 03:59 AM.


Powered by vBulletin® Copyright ©2000 - 2013, Jelsoft Enterprises Ltd.
Copyright ©2002 - 2013, Wilders Security Forums