Disable useless ports in Win2000

Source: Internet
Author: User
Tags ftp connection

For how to disable useless ports in win2000, I mentioned this in my previous posts and Shared Folder Security I wrote yesterday.
Here I am writing security knowledge basics for your reference:
Each Service corresponds to the corresponding port. For example, the WWW Service port of zookeeper is 80, smtp is 25, ftp is 21, and the service is enabled by default in win2000 installation. It is unnecessary for individual users to disable the port, that is, to disable useless services.
In "service" in "Administrative Tools" of "Control Panel", configure.
1. Close ports such as 7.9: Close Simple TCP/IP Service to support the following TCP/IP Services: Character Generator Daytime Discard Echo and Quote of the Day.
2. disable port 80: Disable the WWW Service. The "Service" is displayed as "World Wide Web Publishing Service", which provides Web connection and management through the management unit of Internet Information Service.
3. disable port 25: Disable the Simple Mail Transport Protocol (SMTP) Service. It provides the function of sending emails across networks.
4. disable port 21: Disable FTP Hing Service. It provides FTP connection and management through the management unit of Internet Information Service.
5. disable port 23: disable the Telnet service, which allows remote users to log on to the system and run console programs using command lines.
6. It is also important to disable the server Service, which provides RPC support, file, printing, and named pipe sharing. Turn Off win2k's default share, such as ipc $, c $, admin $, and so on. Disabling this service does not affect your co-operation.
7. Another port is port 139, and port 139 is the NetBIOS Session port, which is used for file and print sharing. Note that port 139 is also enabled for unix machines running samba, and the function is the same. In the past, Traffic 2000 was used to judge whether the host type of the other party was inaccurate. It is estimated that port 139 was opened as an NT host, and now it is better.
To disable the 139 listener, select the "Internet Protocol (TCP/IP)" attribute in "Local Connection" of "network and dial-up connection, in "Advanced TCP/IP Settings" and "WINS Settings", enter "disable NETBIOS for TCP/IP". If you check the box, port 139 is disabled.
For individual users, you can set it to "disabled" in the service attribute settings to avoid restarting the service next time and opening the port.

Related Article

Contact Us

The content source of this page is from Internet, which doesn't represent Alibaba Cloud's opinion; products and services mentioned on that page don't have any relationship with Alibaba Cloud. If the content of the page makes you feel confusing, please write us an email, we will handle the problem within 5 days after receiving your email.

If you find any instances of plagiarism from the community, please send an email to: info-contact@alibabacloud.com and provide relevant evidence. A staff member will contact you within 5 working days.

A Free Trial That Lets You Build Big!

Start building with 50+ products and up to 12 months usage for Elastic Compute Service

  • Sales Support

    1 on 1 presale consultation

  • After-Sales Support

    24/7 Technical Support 6 Free Tickets per Quarter Faster Response

  • Alibaba Cloud offers highly flexible support services tailored to meet your exact needs.