Search:  

 
 
   All ForumsHot TopicsGallery






how-to block ads


 
Forums » The Site » Old Forums » Kerio - Tiny Support » [Kerio 4.x] port 44334 is OPEN: BIG SECURITY HOLE
Search Topic:
Share Topic:
RSS topic:
toggle:
flat / full
normal / watch
Posting:
Release of Kerio Personal Firewall 4.0.6 »
« [Kerio 2.x] Ports open in all versions of Kerio 2.15!  
AuthorAll Replies

ghost16825
Use security metrics
Premium
join:2003-08-26

reply to the viper
Re: [Kerio 4.x] port 44334 is OPEN: BIG SECURITY H

said by the viper See Profile:
I did a full port scann 1- 65535 lol while i ate Turkey , and this was the result w/ KPF 4.008 ids on and rule set from Blitzen from 2.1.5...

Port: Status Service Description
1-1970 stealthed n/a n/a
1972-2175 stealthed n/a n/a
2177-44333 stealthed n/a n/a
44335-65535 stealthed n/a n/a
1971 closed n/a n/a
2176 closed n/a n/a
44334 open n/a n/a

Recommendation:

I can confirm that this affects 2.15 as well.
That's right 2.15!
I'm starting a new tread for this one.
»[Kerio 2.x] Ports open in all versions of Kerio 2.15!


BlitzenZeus
Burnt Out Cynic
Premium,MVM
join:2000-01-13
Beaverton, OR
·Verizon FIOS
·Verizon Online DSL

reply to the viper
Ahh.. they made the worthless ids the component blocking the packet... Funny, how they want you to use a horribly coded ids, but your advanced rules are not able to block the packet. That is if it wasn't blocked by some other source.
--
My hourly rates:
$25 per hour.
$35 per hour if you want to watch.
$45 per hour if you want to help.
$75 per hour if you tried to fix it, and failed.


the viper

join:2002-03-29
Nashua, NH

reply to gwion
Re: [Kerio 4.x] port 44334 is OPEN: BIG SECURITY HOLE

I did a full port scann 1- 65535 lol while i ate Turkey , and this was the result w/ KPF 4.008 ids on and rule set from Blitzen from 2.1.5...

Port: Status Service Description
1-1970 stealthed n/a n/a
1972-2175 stealthed n/a n/a
2177-44333 stealthed n/a n/a
44335-65535 stealthed n/a n/a
1971 closed n/a n/a
2176 closed n/a n/a
44334 open n/a n/a

Recommendation:


gwion
wild colonial boy
Premium,ExMod 2001-08
join:2000-12-28
Pittsburgh, PA

reply to matunga
Kerio uses that port for -all- admins, local admin being accomplished via a loopback... and it isn't an unsound way to do it, just as long as the developer knows what he's doing and properly secures the administrative ports... problem arises where they're left open, and visible, they become a firewall fingerprint... and if they're left open, and unpassworded, they're an advertisement to get owned.

As far as defending against "half-open" scans, Kerio handled the nMap scans I threw at it over my LAN fairly well, some time back, when I tested it... I may have to try doing it again, with 2.1.5 ... I think it might be interesting to do it with 4.x, sometime, but I would rather wait until something resembling a stable build comes out... and as far as I can see, so far, it ain't here, yet.
--
Even when you feel like your life is fading
I know that you'll go on forever
You're that good...
Forums » The Site » Old Forums » Kerio - Tiny SupportRelease of Kerio Personal Firewall 4.0.6 »
« [Kerio 2.x] Ports open in all versions of Kerio 2.15!  


Thursday, 26-Nov 03:46:03 Terms of Use | Privacy Policy | Hosting by www.nac.net - DSL,Hosting & Co-lo | feedback | contact
over 10 years online! © 1999-2009 dslreports.com.
page compression OFF
Most commented news this week
· [105] New AT&T Ad Campaign Hits Back At Verizon
· [103] Time Warner Cable Fires Broadside At Broadcasters
· [95] Apple Joins AT&T Verizon Snark Fest
· [85] New Bill Takes Aim At Higher Verizon ETFs
· [63] TiVo Sees Record Customer Losses
· [48] In-Flight Internet Headed For Bumpy Landing?
· [34] Senators Want ACTA Made Public
· [31] Despite Billions In USF Fees, U.S. Libraries Lack Bandwidth
· [30] Earthlink Suffers From Major E-mail Outage
· [30] AT&T Offers New Prepaid Wireless plans
Most people now reading
· Windows 7 boot manager editing questions [Microsoft Help]
· Shutting of Electricity Temporarily (up to 1 yr) to Save $$$ [Home Repair & Improvement]
· 3.x Feral Druid - Bear Tanking Guide [World of Warcraft]
· Whats the big deal about being "Old School"....? [World of Warcraft]
· [DVR] DCX3400 - 30 Second Skip Forward [Comcast Cable TV]
· Fiber to the Premises [Comcast HSI]
· Reasons #137/#138 to Love Windows Home Server [Microsoft Help]
· [Windows 7] Windows Installer has stopped working [Microsoft Help]
· HOW-TO: QoS and Tomato (fixes "choppy voice") [MagicJack]
· IPComms Free DIDs now with sip registration maybe?? [VOIP Tech Chat]