[Techtalk] client port numbers on windoze

Carla Schroder carla at bratgrrl.com
Fri Jun 30 03:25:10 UTC 2006


On Thursday 29 June 2006 9:24 am, Travis Casey wrote:
> >From: Carla Schroder <carla at bratgrrl.com>
> 
> >I don't have a windows box at the moment to test this- if my aging memory 
> >serves me, doesn't windows routinely use privileged port - <1024 - for 
client 
> >connections, like when you SSH into a linux server?
> 
> Doesn't seem to... I've got 30 different client connections open right now 
from 
> my Windows XP box (including using PuTTY to SSH different places), and none
> of them are originating from privileged ports.
> 
> Further, back ten years or so ago, when I first got to where I work now, the
> "firewall" here consisted of a filter on the router telling it to disallow 
packets
> going to privileged ports on our "inside" machines from outside.  With a 
couple
> thousand Windows machines on our network, if Windows routinely used 
> privileged ports, tons of people would've been screaming at us about things
> not working.
> 

Thanks, I was wondering because I like to filter privileged source ports with 
iptables. I figure if something is coming from a client from a privileged 
port, it's either a borked application or some kind of mischief.


-- 
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
 Carla Schroder
 check out my "Linux Cookbook", the ultimate Linux user's
 and sysadmin's guide! http://www.oreilly.com/catalog/linuxckbk/
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~


More information about the Techtalk mailing list