Em Andamento

block ports 21 and 2077 on server for PCI compliance

I have a server trying to meet PCI compliance and the scan from Trustwave has highlighted the details below regarding port 21 and port 2077.

Tech support for my server says these can be blocked but they don't offer a service for doing the actual work. They say it can be done using IP tables as it is a dedicated server.

So as far as I understand, I need to get these ports blocked and am looking for someone with the skills and knowledge to do this.

Unencrypted Communication Channel Accessibility

port 21

The service running on this port (most often Telnet, FTP, etc…) appears to make use of a plaintext (unencrypted) communication channel. Payment industry policies (PCI 1.1.5.b, 2.2.2.b, 2.3, & 8.4.a) forbid the use of such insecure services/protocols. Unencrypted communication channels are vulnerable to the disclosure and/or modification of any data transiting through them (including usernames and passwords), and as such the confidentially and integrity of the data in transit cannot be ensured with any level of certainty.

Web Application Transmits Login Credentials Without Encryption

port 2077

There is a web application running on this host that transmits login credentials over HTTP, which is a cleartext protocol. As such, if an attacker was able to intercept traffic containing login credentials, it would be trivial to view user account and password information."

Habilidades: Administrador do Sistema, Hospedagem Web, Segurança na rede, Gestão de Site

Ver mais: trustwave, tech support service, tech-21, get tech support, compliance 11, b&c compliance, service level management, my web tech, tech support website, website compliance, vulnerable, channel communication, trustwave unencrypted communication channel accessibility, unencrypted communication channel accessibility, server pci, intercept http traffic, block website using, block account, intercept http, website tech support, snow leopard server dns block website, windows server 2003 block mac address, level web hosting support, server can block p2p, web channel

Acerca do Empregador:
( 2 comentários ) bolton, United Kingdom

ID do Projeto: #5100142

Premiar a:

rmmarconi

Hi, I'm a experienced System and Network administrator with more than 10 years of experience with Debian, Slackware, FreeBSD, OpenBSD, Solaris and others Linux and Unix flavors. Now I'm a System Administrator for the Mais

£32 GBP em 1 dia
(10 Avaliações)
4.7

8 freelancers estão ofertando em média £55 para este trabalho

drailean

A proposal has not yet been provided

£88 GBP em 1 dia
(49 Comentários)
5.1
muzzamilnoor

Expert Info security expert and system administrator here. We need to first find out why these ports are open and then can easily be closed.

£20 GBP em 1 dia
(6 Comentários)
4.6
s2fdsindia

Hi , We are linux professionals holding experience in hosting environments. We have experience in doing this for PCI compliance. We can do this for you.

£20 GBP in 0 dias
(3 Comentários)
2.5
ggabor67

Hi nrg3g, I'm system administrator since 1996. I'm sure, I can fix your problem. Just call me. Regards, George

£50 GBP in 0 dias
(0 Comentários)
0.0
romeroc24

La propuesta todavía no ha sido proveída

£150 GBP in 3 dias
(0 Comentários)
0.0
mailsmaity

I can do that in Linux. Ready to work on this.. will deliver project with in time. please assign to me. looking forward to work with you my skype id - [url removed, login to view]

£55 GBP in 3 dias
(0 Comentários)
0.0
tejasbhosale008

Hii i m linux expert i will block those ports on your dedicated server dont worry about that and will help you also for further projects.

£23 GBP em 1 dia
(0 Comentários)
0.0
apolizu

Hello, I'm a professional Linux system administrator which many years of experience. I can close these ports in a couple of minutes. Actually port 21 is used for SSH connection and it's advisable to change it to som Mais

£28 GBP em 1 dia
(0 Comentários)
0.0