North American Network Operators Group

Date Prev | Date Next | Date Index | Thread Index | Author Index | Historical

Re: Blocking port 135?

  • From: Sean Donelan
  • Date: Fri Aug 01 15:01:44 2003

On Fri, 1 Aug 2003, Adi Linden wrote:
> http://www.cert.org/advisories/CA-2003-19.html
>
> Would blocking port 135 at the network edge be a prudent preventative
> measure?

It depends.

  Do you have a network edge?
  Do you have the resources to block it?
  Do you need it for anything else?
  Have you left other holes open?

In reality blocking port 135 is almost never sufficient.  Its slightly
better than waving a dead chicken over your PC.