arTech
Topic Starter
I am using Outpost Firewall Pro.
Telent service is disabled.
I have scanned PC with PCFlank, GRC and Sygate and all found open Telnet port 23 as dangerous and visible to others on the Internet.
“Open ports are dangerous because they're an easy and attractive means of entry for hackers” – Sygate.
Experts in computer security, such as SANS Institute, recommend that the use of Telnet for remote logins should be discontinued under all normal circumstances, for the following reasons:
• Telnet, by default, does not encrypt any data sent over the connection (including passwords), and so it is often practical to eavesdrop on the communications and use the password later for malicious purposes; anybody who has access to a router, switch, hub or gateway located on the network between the two hosts where Telnet is being used can intercept the packets passing by and obtain login and password information (and whatever else is typed) with any of several common utilities like tcpdump and Wireshark.
• Most implementations of Telnet have no authentication that would ensure communication is carried out between the two desired hosts and not intercepted in the middle.
• Commonly used Telnet daemons have several vulnerabilities discovered over the years.
With netstat -a –n can’t see open port 23.
When I manually close this port can’t run Internet.
Is it false positive open port report or I have to better set firewall?
arTech
Telent service is disabled.
I have scanned PC with PCFlank, GRC and Sygate and all found open Telnet port 23 as dangerous and visible to others on the Internet.
“Open ports are dangerous because they're an easy and attractive means of entry for hackers” – Sygate.
Experts in computer security, such as SANS Institute, recommend that the use of Telnet for remote logins should be discontinued under all normal circumstances, for the following reasons:
• Telnet, by default, does not encrypt any data sent over the connection (including passwords), and so it is often practical to eavesdrop on the communications and use the password later for malicious purposes; anybody who has access to a router, switch, hub or gateway located on the network between the two hosts where Telnet is being used can intercept the packets passing by and obtain login and password information (and whatever else is typed) with any of several common utilities like tcpdump and Wireshark.
• Most implementations of Telnet have no authentication that would ensure communication is carried out between the two desired hosts and not intercepted in the middle.
• Commonly used Telnet daemons have several vulnerabilities discovered over the years.
With netstat -a –n can’t see open port 23.
When I manually close this port can’t run Internet.
Is it false positive open port report or I have to better set firewall?
arTech