site Search:


 
    All Forums Hot Topics Gallery






how-to block ads


 
Search Topic:
Uniqs:
31733
Share Topic
Posting?
Post a:
Post a:
Links: ·Forum Rules ·Forum FAQ ·Bandwidth Limits/Congestion Management ·Copyright Infringement?
page: 1 · 2 · 3
AuthorAll Replies


Johkal
Cool Cat
Premium,MVM
join:2002-11-13
Happy Valley
kudos:5
Reviews:
·Comcast
·Comcast Digital ..

FAQ # 10778 Blocked Ports

Per this FAQ: »Comcast High Speed Internet FAQ »What ports does Comcast block?

"Comcast currently blocks ports 67, 68, 135-139, 445, 520, and 1080."

Are all of these ports still blocked?
Are there any additions?

Thank you!
--
Write me up for 125.......I Can't Drive 55 »redrocker.com/ »cabowabo.com/


jjsk8r85

join:2005-02-17
Belleville, MI

I don't know, open up those ports on your firewall and let me telnet to em :P



Johkal
Cool Cat
Premium,MVM
join:2002-11-13
Happy Valley
kudos:5
Reviews:
·Comcast
·Comcast Digital ..

I only have a Comcast e-mail account. Comcast is not my ISP yet. Maybe someone else would be so kind to try this.
--
Write me up for 125.......I Can't Drive 55 »redrocker.com/ »cabowabo.com/



Combat Chuck
Too Many Cannibals
Premium
join:2001-11-29
Erie, PA

reply to Johkal
I just tested and all that seems to be blocked in my area are 135-139, and 445. I think it is somewhat region dependant however.
--
Asking those who disagree with you to find support of your arguements is like asking an assailant if you can borrow his gun.



MrChupacabra
Premium
join:2003-03-26
Florida

reply to Johkal
From what I know, the ports 53, 55, 77, 135 - 139 and 445 are blocked and no others. I do not know about 1080. I'll have to look into that one.



jjsk8r85

join:2005-02-17
Belleville, MI

reply to Johkal
if I knew of any other way to test, I would. the only way I know of is to open those ports on another box within comcast's network and try to connect to it



Combat Chuck
Too Many Cannibals
Premium
join:2001-11-29
Erie, PA

said by jjsk8r85:

if I knew of any other way to test, I would. the only way I know of is to open those ports on another box within comcast's network and try to connect to it
Set you're firewall to respond to connection attempts with closed instead of just dropping them (Ie: turn off stealth mode) then run a security scan over at Gibsons site, whatever shows as stealth is probably blocked by Comcast. It's not 100% definitive but it'll do in most cases.
--
Asking those who disagree with you to find support of your arguements is like asking an assailant if you can borrow his gun.


oldTDNickell5
Premium
join:2000-12-19
Federal Way, WA

reply to Johkal
I could be wrong,but i think all the info in this FAQ is still good.



Dlazy

@comcast.net

reply to Johkal
I only tested the the ports mentioned in this thread and found that 135-139, 445, and 1080 were blocked. I'm in Augusta, GA, so YMMV.



Johkal
Cool Cat
Premium,MVM
join:2002-11-13
Happy Valley
kudos:5
Reviews:
·Comcast
·Comcast Digital ..

1 edit

reply to Johkal
So far it's been verified that these ports are blocked:
135-139
445
1080

Still need to verify:
67
68
520

Per MrChupacabra See Profile; these ports may be blocked.
Need to verify:
53 Not Blocked (per NetFixer See Profile)
55
77
--
Write me up for 125.......I Can't Drive 55 »redrocker.com/ »cabowabo.com/



NetFixer
Freedom is NOT free
Premium
join:2004-06-24
The 'Boro
Reviews:
·Vonage
·Cingular Wireless
·Comcast
·AT&T Southeast

I just temporarily disabled the software firewall on a Windows server and placed it in the DMZ on my Comcast router.

I can verify that Comcast is not blocking TCP port 53.

Ports 53, 67, 68 and 520 are usually associated with UDP rather than TCP, and UDP blocking is a bit more difficult to detect with an external passive port scanner. I suspect however, that Comcast and most ISP's who use DHCP for their clients would be blocking UDP ports 67 and 68 since otherwise a client's DHCP server could interfere with the ISP's network. Blocking port 520 UDP (RIP) is also difficult to detect, but it would make sense for an ISP to block it to prevent interference with their own routers.
--
A well-regulated militia, being necessary to the security of a free State, the right of the people to keep and bear arms shall not be infringed.
Test your firewall.



Nerdtalker
Working Hard, Or Hardly Working?
Premium,MVM
join:2003-02-18
Tucson, AZ

reply to Johkal
Some of these are probably blocked in the .config file as well.

For this to be successful, we need to establish some kind of common testing methodology instead of having everybody fend for themselves and create their own impromptu tests, otherwise we might be putting the validity of our results in question.

Also, the source of the information in the FAQ was Qumahlin See Profile, an extremely reputable Comcast network engineer.
--
"Some people never see the light till it shines thru bullet holes." -Bruce Cockburn

I'm testing Gmail's spam filters: Broadbandreports1@gmail.com
Spam: 12900+ messages currently using 406 MB.



oldTDNickell5
Premium
join:2000-12-19
Federal Way, WA

said by Nerdtalker:

Some of these are probably blocked in the .config file as well.

For this to be successful, we need to establish some kind of common testing methodology instead of having everybody fend for themselves and create their own impromptu tests, otherwise we might be putting the validity of our results in question.

Also, the source of the information in the FAQ was Qumahlin See Profile, an extremely reputable Comcast network engineer.
I agree this FAQ should be left alone.


jbob
Reach Out and Touch Someone
Premium
join:2004-04-26
Little Rock, AR

reply to Nerdtalker

said by Nerdtalker:

Also, the source of the information in the FAQ was Qumahlin See Profile, an extremely reputable Comcast network engineer.
Who by the way hasn't posted since Dec 24th.

Having someone from Comcast say what they are blocking would indeed be the best option.


oldTDNickell5
Premium
join:2000-12-19
Federal Way, WA

He's not the only one that has been absent.
We seemed to have lost alot of our top helpers.
I won't name names you guys know who they are.


NormanS
Premium,MVM
join:2001-02-14
San Jose, CA
kudos:4
Reviews:
·SONIC.NET
·Pacific Bell - SBC

reply to Johkal

said by Johkal:

Per this FAQ: »Comcast High Speed Internet FAQ »What ports does Comcast block?

"Comcast currently blocks ports 67, 68, 135-139, 445, 520, and 1080."

Are all of these ports still blocked?
Are there any additions?
DHCP, NetBIOS, SMB, RIP, and Socks4. All sources of potential, or actual abuse. I think you will be hard pressed to find a residential service which doesn't block some subset of those ports.
--
Norman
~Oh Lord, why have you come
~To Konnyu, with the Lion and the Drum


MrChupacabra
Premium
join:2003-03-26
Florida

reply to Johkal
Ok, after digging around at work before I left tonight I can't find any updated information on the blocked port list we have. That information hasn't been updated in 2 years or so. Its still considered the official comcast list of blocked ports though. Now as to whats blocked (tcp/udp/ect) I don't know.
--
Any intelligent fool can make things bigger, more complex, and more violent. It takes a touch of genius -- and a lot of courage -- to move in the opposite direction. --Albert Einstein



Johkal
Cool Cat
Premium,MVM
join:2002-11-13
Happy Valley
kudos:5
Reviews:
·Comcast
·Comcast Digital ..

reply to Nerdtalker

said by Nerdtalker:

For this to be successful, we need to establish some kind of common testing methodology instead of having everybody fend for themselves and create their own impromptu tests, otherwise we might be putting the validity of our results in question.

That's a great idea. Any suggestions on how to approach this?

I would leave this FAQ alone, but being 2 years old leaves some doubts. If the remaining ports are not confirmed blocked/not blocked, I will just add a note to the original FAQ as such.
--
Write me up for 125.......I Can't Drive 55 »redrocker.com/ »cabowabo.com/


Johkal
Cool Cat
Premium,MVM
join:2002-11-13
Happy Valley
kudos:5

reply to Johkal
Anyone else interested in verifying these ports?



MrChupacabra
Premium
join:2003-03-26
Florida

said by Johkal:

Anyone else interested in verifying these ports?
What? Poke and prod at the system to see what it does? That sounds fun. Just let me know what you need to have done and what we will be using for the standards so that its all consistent.
--
Any intelligent fool can make things bigger, more complex, and more violent. It takes a touch of genius -- and a lot of courage -- to move in the opposite direction. --Albert Einstein

Monday, 04-Jun 00:08:52 Terms of Use & Privacy | feedback | contact | Hosting by nac.net - DSL,Hosting & Co-lo
over 12.5 years online © 1999-2012 dslreports.com.
Most commented news this week
Hot Topics