 JohkalCool CatPremium,MVM join:2002-11-13 Happy Valley kudos:5 Reviews:
·Comcast
·Comcast Digital ..
| FAQ # 10778 Blocked Ports Per this FAQ: »Comcast High Speed Internet FAQ »What ports does Comcast block?
"Comcast currently blocks ports 67, 68, 135-139, 445, 520, and 1080."
Are all of these ports still blocked? Are there any additions?
Thank you! -- Write me up for 125.......I Can't Drive 55 »redrocker.com/ »cabowabo.com/ |
|
 | I don't know, open up those ports on your firewall and let me telnet to em :P |
|
 JohkalCool CatPremium,MVM join:2002-11-13 Happy Valley kudos:5 Reviews:
·Comcast
·Comcast Digital ..
| I only have a Comcast e-mail account. Comcast is not my ISP yet. Maybe someone else would be so kind to try this. -- Write me up for 125.......I Can't Drive 55 »redrocker.com/ »cabowabo.com/ |
|
 Combat ChuckToo Many CannibalsPremium join:2001-11-29 Erie, PA | reply to Johkal I just tested and all that seems to be blocked in my area are 135-139, and 445. I think it is somewhat region dependant however. -- Asking those who disagree with you to find support of your arguements is like asking an assailant if you can borrow his gun. |
|
 | reply to Johkal From what I know, the ports 53, 55, 77, 135 - 139 and 445 are blocked and no others. I do not know about 1080. I'll have to look into that one. |
|
 | reply to Johkal if I knew of any other way to test, I would. the only way I know of is to open those ports on another box within comcast's network and try to connect to it |
|
 Combat ChuckToo Many CannibalsPremium join:2001-11-29 Erie, PA | said by jjsk8r85:if I knew of any other way to test, I would. the only way I know of is to open those ports on another box within comcast's network and try to connect to it Set you're firewall to respond to connection attempts with closed instead of just dropping them (Ie: turn off stealth mode) then run a security scan over at Gibsons site, whatever shows as stealth is probably blocked by Comcast. It's not 100% definitive but it'll do in most cases. -- Asking those who disagree with you to find support of your arguements is like asking an assailant if you can borrow his gun. |
|
 | reply to Johkal I could be wrong,but i think all the info in this FAQ is still good. |
|
|
|
 | reply to Johkal I only tested the the ports mentioned in this thread and found that 135-139, 445, and 1080 were blocked. I'm in Augusta, GA, so YMMV. |
|
 JohkalCool CatPremium,MVM join:2002-11-13 Happy Valley kudos:5 Reviews:
·Comcast
·Comcast Digital ..
1 edit | reply to Johkal So far it's been verified that these ports are blocked: 135-139 445 1080
Still need to verify: 67 68 520
Per MrChupacabra ; these ports may be blocked. Need to verify: 53 Not Blocked (per NetFixer ) 55 77 -- Write me up for 125.......I Can't Drive 55 »redrocker.com/ »cabowabo.com/ |
|
 NetFixerFreedom is NOT freePremium join:2004-06-24 The 'Boro Reviews:
·Vonage
·Cingular Wireless
·Comcast
·AT&T Southeast
| I just temporarily disabled the software firewall on a Windows server and placed it in the DMZ on my Comcast router.
I can verify that Comcast is not blocking TCP port 53.
Ports 53, 67, 68 and 520 are usually associated with UDP rather than TCP, and UDP blocking is a bit more difficult to detect with an external passive port scanner. I suspect however, that Comcast and most ISP's who use DHCP for their clients would be blocking UDP ports 67 and 68 since otherwise a client's DHCP server could interfere with the ISP's network. Blocking port 520 UDP (RIP) is also difficult to detect, but it would make sense for an ISP to block it to prevent interference with their own routers. -- A well-regulated militia, being necessary to the security of a free State, the right of the people to keep and bear arms shall not be infringed. Test your firewall. |
|
 NerdtalkerWorking Hard, Or Hardly Working?Premium,MVM join:2003-02-18 Tucson, AZ | reply to Johkal Some of these are probably blocked in the .config file as well.
For this to be successful, we need to establish some kind of common testing methodology instead of having everybody fend for themselves and create their own impromptu tests, otherwise we might be putting the validity of our results in question.
Also, the source of the information in the FAQ was Qumahlin , an extremely reputable Comcast network engineer. -- "Some people never see the light till it shines thru bullet holes." -Bruce Cockburn
I'm testing Gmail's spam filters: Broadbandreports1@gmail.com Spam: 12900+ messages currently using 406 MB. |
|
 | said by Nerdtalker:Some of these are probably blocked in the .config file as well. For this to be successful, we need to establish some kind of common testing methodology instead of having everybody fend for themselves and create their own impromptu tests, otherwise we might be putting the validity of our results in question. Also, the source of the information in the FAQ was Qumahlin  , an extremely reputable Comcast network engineer. I agree this FAQ should be left alone. |
|
 jbobReach Out and Touch SomeonePremium join:2004-04-26 Little Rock, AR | reply to Nerdtalker said by Nerdtalker:Also, the source of the information in the FAQ was Qumahlin  , an extremely reputable Comcast network engineer. Who by the way hasn't posted since Dec 24th.
Having someone from Comcast say what they are blocking would indeed be the best option. |
|
 | He's not the only one that has been absent. We seemed to have lost alot of our top helpers. I won't name names you guys know who they are. |
|
 NormanSPremium,MVM join:2001-02-14 San Jose, CA kudos:4 Reviews:
·SONIC.NET
·Pacific Bell - SBC
| reply to Johkal DHCP, NetBIOS, SMB, RIP, and Socks4. All sources of potential, or actual abuse. I think you will be hard pressed to find a residential service which doesn't block some subset of those ports. -- Norman ~Oh Lord, why have you come ~To Konnyu, with the Lion and the Drum |
|
 | reply to Johkal Ok, after digging around at work before I left tonight I can't find any updated information on the blocked port list we have. That information hasn't been updated in 2 years or so. Its still considered the official comcast list of blocked ports though. Now as to whats blocked (tcp/udp/ect) I don't know. -- Any intelligent fool can make things bigger, more complex, and more violent. It takes a touch of genius -- and a lot of courage -- to move in the opposite direction. --Albert Einstein |
|
 JohkalCool CatPremium,MVM join:2002-11-13 Happy Valley kudos:5 Reviews:
·Comcast
·Comcast Digital ..
| reply to Nerdtalker said by Nerdtalker:For this to be successful, we need to establish some kind of common testing methodology instead of having everybody fend for themselves and create their own impromptu tests, otherwise we might be putting the validity of our results in question. That's a great idea. Any suggestions on how to approach this?
I would leave this FAQ alone, but being 2 years old leaves some doubts. If the remaining ports are not confirmed blocked/not blocked, I will just add a note to the original FAQ as such. -- Write me up for 125.......I Can't Drive 55 »redrocker.com/ »cabowabo.com/ |
|
 JohkalCool CatPremium,MVM join:2002-11-13 Happy Valley kudos:5 | reply to Johkal Anyone else interested in verifying these ports? |
|
 | said by Johkal:Anyone else interested in verifying these ports? What? Poke and prod at the system to see what it does? That sounds fun. Just let me know what you need to have done and what we will be using for the standards so that its all consistent. -- Any intelligent fool can make things bigger, more complex, and more violent. It takes a touch of genius -- and a lot of courage -- to move in the opposite direction. --Albert Einstein |
|