Zimbra offers Open Source email server software and shared calendar for Linux and the Mac
 
Go Back   Zimbra - Forums > Zimbra Collaboration Suite > Installation

Welcome to the Zimbra - Forums!
Welcome, if you would like to post a comment please register. We also encourage you to explore all things Zimbra with our team and members of the community.

Reply
 
LinkBack Thread Tools Display Modes
  #1 (permalink)  
Old 10-02-2009, 09:41 AM
Eno Eno is offline
Junior Member
 
Posts: 6
Default How to close open ports ? ( without Netfilter rules )

Hello, I used nmap on my Zimbra test machine :
Code:
22/tcp    open  ssh     OpenSSH 5.1p1 Debian 5 (protocol 2.0)
25/tcp    open  smtp    Postfix smtpd
|_ smtp-commands: EHLO zimbra.test.local, PIPELINING, SIZE 10240000, VRFY, ETRN, STARTTLS, ENHANCEDSTATUSCODES, 8BITMIME, DSN
80/tcp    open  http    Apache httpd 2.2.9 ((Debian) PHP/5.2.6-1+lenny3 with Suhosin-Patch)
|_ html-title: Index of /
110/tcp   open  pop3    Zimbra pop3d
|_ pop3-capabilities: USER STLS EXPIRE(31 USER) UIDL IMPLEMENTATION(ZimbraInc) XOIP TOP SASL
143/tcp   open  imap    Zimbra imapd
|_ imap-capabilities: CONDSTORE THREAD=ORDEREDSUBJECT ESEARCH STARTTLS BINARY UNSELECT LOGINDISABLED UIDPLUS SORT SEARCHRES ID SASL-IR WITHIN AUTH=X-ZIMBRA LIST-EXTENDED QUOTA QRESYNC CHILDREN ENABLE LOGIN-REFERRALS I18NLEVEL=1 RIGHTS=ektx ACL IDLE CATENATE IMAP4rev1 LITERAL+ ESORT NAMESPACE MULTIAPPEND
389/tcp   open  ldap?
465/tcp   open  ssl     OpenSSL (SSLv3)
587/tcp   open  smtp    Postfix smtpd
|_ smtp-commands: EHLO zimbra.test.local, PIPELINING, SIZE 10240000, VRFY, ETRN, STARTTLS, ENHANCEDSTATUSCODES, 8BITMIME, DSN
993/tcp   open  ssl     Microsoft IIS SSL
995/tcp   open  ssl     Microsoft IIS SSL
3310/tcp  open  clam    Clam AV
5222/tcp  open  unknown
5223/tcp  open  ssl     Microsoft IIS SSL
5269/tcp  open  unknown
7025/tcp  open  lmtp    Zimbra lmtpd
7071/tcp  open  ssl     Microsoft IIS SSL
7072/tcp  open  unknown
7335/tcp  open  ssl     Microsoft IIS SSL
7777/tcp  open  socks5  (No authentication; connection failed)
8585/tcp  open  http    Zimbra http config
|_ html-title: Zimbra Collaboration Suite Log In
10015/tcp open  unknown
In my mind there are too much open ports, is there a way to close them without adding rules in Netfilter ?
Lot of those ports are associated to services I don't use anymore, such as ClamAV, Spell checker ect ...

Regards,

Last edited by Eno : 10-02-2009 at 09:47 AM.
Reply With Quote
  #2 (permalink)  
Old 10-05-2009, 05:21 AM
Elite Member
 
Posts: 373
Default

Check if you have antispam, Antivirus running. Stop and disable them.

Moreover something seems to be odd here : -

993/tcp open ssl Microsoft IIS SSL
995/tcp open ssl Microsoft IIS SSL
7071/tcp open ssl Microsoft IIS SSL

Can you explain how are these services related to single service and that too ms IIS server ? Are you sure you are running only zimbra on this machine ?
Reply With Quote
  #3 (permalink)  
Old 10-05-2009, 08:30 AM
Eno Eno is offline
Junior Member
 
Posts: 6
Default

It's just a banner grabing by Nmap, nmap guess the service behind the port.
Reply With Quote
Reply


Thread Tools
Display Modes


Similar Threads

Why Join?

Registering let's you ask questions, makes it easier to search, displays any files attached to posts, and notifies you about replies.

Zimbrablog.com




 

Search Engine Optimization by vBSEO 3.1.0