PDA

View Full Version : Question about port security scan...


KillerQ
June 19th, 2005, 01:58 AM
Hey all,

I successfully set a secure WiFi cinnection up a few months ago -- with MAC filtering and 128bit encryption.... I normally have the computer plugged directly into the cable modem -- without the wireless router -- but sometimes when i need it in other rooms, i use the wireless router....anyhow...

I like to scan with: http://scan.sygate.com/

Now, all of my ports say BLOCKED and then this:

"This port has not responded to any of our probes. It appears to be completely stealthed."

EXCEPT, 2 of them (WEB 80 and IDENT 113) say CLOSED and this:

"This port has responded to our probes. This means that you are not running any application on this port, but it is still possible for someone to crash your computer through known TCP/IP stack vulnerabilities."

I remember before that when i scanned -- this didn't come up.... any idead on how to fix it?

Thanks a ton in advance...

Matt!

uripyores
June 19th, 2005, 02:34 AM
It is basically related to your firewall settings etc, Read here for a full explanation.http://grc.com/faq-shieldsup.htm#IDENT

KillerQ
June 19th, 2005, 02:48 AM
Thanks! Is this a major issue -- or nothing to really be concerned with?

Matt

uripyores
June 19th, 2005, 03:03 AM
Well, it doesn't mean that you've got a virus or anything like that, just that it would be possible for someone with evil intentions to access your computer. But, closed ports are better than not closed[or open]. I would recommend you click on the link and read so you can make your own assessment.:)

bAdWaYz
June 19th, 2005, 05:09 AM
You are less likely to be "hacked" over port 113 than port 80. 113 is an ident port and mostly only used for ident on older irc servers and such. Port 80 as we know is the standard internet port. Alot of routers maybe even yours come with firewall options to block or stealth ports 113 and 80. I personally forward port 113 because I use a dalnet server that needs it but have to say I have yet to get "packeted" to death. If you are paranoid then by all means use the routers firewall options to stealth these ports.