[Security-Discuss] Question about DSL modem/router/firewall vs. firewall scans at scan.sygate.com

AAW <[email protected]> Fri, 17 Mar 2006 14:06:07 -0600
Newsgroups gmane.linux.mandrake.security.general
Message-ID <[email protected]>
We recently changed from dial-up to DSL (PPPoe) and added a modem/router 
(Zoom X5) with built-in firewall. First thing I did was to point my 
browser to scan.sygate.com to check the firewall. I'm used to seeing all 
ports come back as blocked, but that isn't what I got this time.

The TCP scan (http://scan.sygate.com/pretcpscan.html) shows ports 260 and 
557 open. The UDP scan (http://scan.sygate.com/preudpscan.html) says that 
most scanned ports are closed (rejecting packets) rather than blocked 
(silently dropping packets) and several are open, including 53 (DNS), 138 
(NetBIOS), 1900 (UPnP). The Quick Scan and Stealth Scan show a number of 
ports that are closed rather than blocked. 

 Is this normal for a router with a firewall? I thought they were supposed 
to be more secure than software-based firewalls.

Thanks,
Arn
____________________________________________________
Want to buy your Pack or Services from Mandriva? 
Go to http://store.mandriva.com
Join the Club : http://www.mandrivaclub.com
____________________________________________________