<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Port Scanner shows a wide range of ports blocked which the customer requires to be open for scanning. in ExtremeSwitching (EXOS/Switch Engine)</title>
    <link>https://community.extremenetworks.com/t5/extremeswitching-exos-switch/port-scanner-shows-a-wide-range-of-ports-blocked-which-the/m-p/87598#M20868</link>
    <description>&lt;P&gt;Switches are X670G2&amp;nbsp;with FW 22.6.1.4. We also have X460G2 which are 1G switches but for some reason they didn’t detect any blocked ports for these.&lt;/P&gt;</description>
    <pubDate>Mon, 24 Aug 2020 22:42:50 GMT</pubDate>
    <dc:creator>KG1790</dc:creator>
    <dc:date>2020-08-24T22:42:50Z</dc:date>
    <item>
      <title>Port Scanner shows a wide range of ports blocked which the customer requires to be open for scanning.</title>
      <link>https://community.extremenetworks.com/t5/extremeswitching-exos-switch/port-scanner-shows-a-wide-range-of-ports-blocked-which-the/m-p/87594#M20864</link>
      <description>&lt;P&gt;No ACL has been configured but a lot of the ports have been scanned and are found to be blocked. See excerpt below.&lt;/P&gt;&lt;P&gt;I believe if you dont configure any ACL, all ports should be open by default. Is there any relevant documentation that lists all the ports being blocked by default?&lt;/P&gt;&lt;P&gt;~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~&lt;/P&gt;&lt;P&gt;RESULTS:&lt;BR /&gt;Some of the ports filtered by the firewall are: 20, 21, 22, 23, 25, 53, 80, 111, 135, 443.&lt;BR /&gt;Listed below are the ports filtered by the firewall.&lt;BR /&gt;No response has been received when any of these ports are probed.&lt;BR /&gt;1,6,8-11,13-14,27,30-31,33,38-39,41,43-44,46-47,52,54-55,61,64,68,72,&lt;BR /&gt;76-77,79-81,83,88,94,97,101,104,106,113-114,117,120-122,124,127-128,131,&lt;BR /&gt;135,137,139,143-144,146,149-151,159,161,171-173,176,178-179,181-182,184-185,&lt;BR /&gt;187,193,196,200,202,204,206-207,217,225,228-229,233-234,244,246,253-256,&lt;BR /&gt;260,262,264,266,272-273,278,293,297-298,305,307-310,313,315,317-318,320-322,&lt;BR /&gt;332,334,339,342,344,346,348,352-353,356,359,362,366,369,374,377,380,385-386,&lt;BR /&gt;391-392,394-396,401-402,406,410,412,416-417,426-427,431,434,442,454,456,&lt;BR /&gt;458-459,463,465-467,470,474-475,480,483-484,486,488,490-492,495-496,498,&lt;BR /&gt;504,506-509,511,515,517-518,522,528,531-532,534-536,538,540, and more.&lt;BR /&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 24 Aug 2020 16:11:59 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremeswitching-exos-switch/port-scanner-shows-a-wide-range-of-ports-blocked-which-the/m-p/87594#M20864</guid>
      <dc:creator>KG1790</dc:creator>
      <dc:date>2020-08-24T16:11:59Z</dc:date>
    </item>
    <item>
      <title>Re: Port Scanner shows a wide range of ports blocked which the customer requires to be open for scanning.</title>
      <link>https://community.extremenetworks.com/t5/extremeswitching-exos-switch/port-scanner-shows-a-wide-range-of-ports-blocked-which-the/m-p/87595#M20865</link>
      <description>&lt;P&gt;KG,&lt;/P&gt;&lt;P&gt;I would not expect Extreme XOS switches to block any ports unless they are configured to do so. Also in your post you say “Some of the ports filtered by the firewall are: 20, 21, 22, 23, 25, 53, 80, 111, 135, 443.&lt;BR /&gt;Listed below are the ports filtered by the firewall.”&lt;/P&gt;&lt;P&gt;I would expect a firewall to block all ports that it is not configured to allow.&lt;/P&gt;</description>
      <pubDate>Mon, 24 Aug 2020 19:19:54 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremeswitching-exos-switch/port-scanner-shows-a-wide-range-of-ports-blocked-which-the/m-p/87595#M20865</guid>
      <dc:creator>davidj_cogliane</dc:creator>
      <dc:date>2020-08-24T19:19:54Z</dc:date>
    </item>
    <item>
      <title>Re: Port Scanner shows a wide range of ports blocked which the customer requires to be open for scanning.</title>
      <link>https://community.extremenetworks.com/t5/extremeswitching-exos-switch/port-scanner-shows-a-wide-range-of-ports-blocked-which-the/m-p/87596#M20866</link>
      <description>&lt;P&gt;Sorry for the confusion. The statement below came from the scan results by the customer. It doesn’t mean that there is a firewall in between them and the switch. They just assumed as such because ports are being blocked by the switch.&lt;/P&gt;&lt;P&gt;“Some of the ports filtered by the firewall are: 20, 21, 22, 23, 25, 53, 80, 111, 135, 443.&lt;BR /&gt;Listed below are the ports filtered by the firewall.”&lt;/P&gt;&lt;P&gt;I have checked both from cli using &lt;STRONG&gt;show configuration acl&amp;nbsp;&lt;/STRONG&gt;and from GUI, there is no ACL configured.&lt;/P&gt;</description>
      <pubDate>Mon, 24 Aug 2020 22:02:58 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremeswitching-exos-switch/port-scanner-shows-a-wide-range-of-ports-blocked-which-the/m-p/87596#M20866</guid>
      <dc:creator>KG1790</dc:creator>
      <dc:date>2020-08-24T22:02:58Z</dc:date>
    </item>
    <item>
      <title>Re: Port Scanner shows a wide range of ports blocked which the customer requires to be open for scanning.</title>
      <link>https://community.extremenetworks.com/t5/extremeswitching-exos-switch/port-scanner-shows-a-wide-range-of-ports-blocked-which-the/m-p/87597#M20867</link>
      <description>&lt;P&gt;What kind of switches are we talking about and what firmware are they running?&lt;/P&gt;</description>
      <pubDate>Mon, 24 Aug 2020 22:05:12 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremeswitching-exos-switch/port-scanner-shows-a-wide-range-of-ports-blocked-which-the/m-p/87597#M20867</guid>
      <dc:creator>davidj_cogliane</dc:creator>
      <dc:date>2020-08-24T22:05:12Z</dc:date>
    </item>
    <item>
      <title>Re: Port Scanner shows a wide range of ports blocked which the customer requires to be open for scanning.</title>
      <link>https://community.extremenetworks.com/t5/extremeswitching-exos-switch/port-scanner-shows-a-wide-range-of-ports-blocked-which-the/m-p/87598#M20868</link>
      <description>&lt;P&gt;Switches are X670G2&amp;nbsp;with FW 22.6.1.4. We also have X460G2 which are 1G switches but for some reason they didn’t detect any blocked ports for these.&lt;/P&gt;</description>
      <pubDate>Mon, 24 Aug 2020 22:42:50 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremeswitching-exos-switch/port-scanner-shows-a-wide-range-of-ports-blocked-which-the/m-p/87598#M20868</guid>
      <dc:creator>KG1790</dc:creator>
      <dc:date>2020-08-24T22:42:50Z</dc:date>
    </item>
    <item>
      <title>Re: Port Scanner shows a wide range of ports blocked which the customer requires to be open for scanning.</title>
      <link>https://community.extremenetworks.com/t5/extremeswitching-exos-switch/port-scanner-shows-a-wide-range-of-ports-blocked-which-the/m-p/87599#M20869</link>
      <description>&lt;P&gt;I have never seen a X670-G2 block port 23 or 22 which we use all the time for telnet and ssh.&lt;/P&gt;&lt;P&gt;With that being said, are you only able to access the switches via the local console connection?&lt;/P&gt;</description>
      <pubDate>Mon, 24 Aug 2020 23:14:17 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremeswitching-exos-switch/port-scanner-shows-a-wide-range-of-ports-blocked-which-the/m-p/87599#M20869</guid>
      <dc:creator>davidj_cogliane</dc:creator>
      <dc:date>2020-08-24T23:14:17Z</dc:date>
    </item>
    <item>
      <title>Re: Port Scanner shows a wide range of ports blocked which the customer requires to be open for scanning.</title>
      <link>https://community.extremenetworks.com/t5/extremeswitching-exos-switch/port-scanner-shows-a-wide-range-of-ports-blocked-which-the/m-p/87600#M20870</link>
      <description>&lt;P&gt;Sorry, I still don’t really understand the problem.&lt;/P&gt;&lt;P&gt;What did the customer scan?&lt;/P&gt;&lt;P&gt;Did he do a port-scan on the mgmt IP-address of the switch? I would suspect that most ports are blocked then and only some are opened (e.g. telnet (if enabled), ssh (if enabled) and so on)&lt;/P&gt;&lt;P&gt;Did he do a port-scan on a system (e.g. Server) that connects to the switch?&lt;/P&gt;&lt;P&gt;Did he do a port-scan on a system in the internet?&lt;/P&gt;&lt;P&gt;This is the big question: From where to where was the port-scan executed?&lt;/P&gt;</description>
      <pubDate>Thu, 27 Aug 2020 15:36:57 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremeswitching-exos-switch/port-scanner-shows-a-wide-range-of-ports-blocked-which-the/m-p/87600#M20870</guid>
      <dc:creator>Stefan_K_</dc:creator>
      <dc:date>2020-08-27T15:36:57Z</dc:date>
    </item>
  </channel>
</rss>

