Skip to Content
CMS Security Handbook: The Comprehensive Guide for WordPress®, Joomla!®, Drupal™, and Plone®
book

CMS Security Handbook: The Comprehensive Guide for WordPress®, Joomla!®, Drupal™, and Plone®

by Tom Canavan
April 2011
Intermediate to advanced
432 pages
11h 1m
English
Wiley
Content preview from CMS Security Handbook: The Comprehensive Guide for WordPress®, Joomla!®, Drupal™, and Plone®

Checking for Open Ports

Ports in the vernacular of computing can refer to hardware ports such as serial or USB ports. It also can refer to software ports, which is the context used for this discussion.

Figure 5-13 shows an example of a system with many ports open to the outside world. This screen indicates not only what ports are open, but also what services are being offered, as listed in the right-hand column.

Figure 5-13: Ports open to the outside world

image

This information has been generated by the NMAP network mapping tool. As designated by NMAP, the term Open means that the application or service on this machine is listening for requests, and the term Filtered means that something (such as a firewall) is blocking the port. Note how the SMTP port is designated as Filtered, which means this server is blocking requests to it. Note that FTP is Open, meaning that it is ready to accept a connection.

Closed (not shown) means that the port has no services running on it or it's specifically closed. You can open closed ports at any time as needed.

As you learned in Chapter 4, NMAP is a good tool to use to discover security holes in your website. The action here is to check whether any ports are open that should not be. Multiple reasons exist for ports to be open that are not necessarily the sign of hackers. However, at the end of the day, if ports are open that should not be, then you should ...

Become an O’Reilly member and get unlimited access to this title plus top books and audiobooks from O’Reilly and nearly 200 top publishers, thousands of courses curated by job role, 150+ live events each month,
and much more.

Read now

Unlock full access

More than 5,000 organizations count on O’Reilly

AirBnbBlueOriginElectronic ArtsHomeDepotNasdaqRakutenTata Consultancy Services

QuotationMarkO’Reilly covers everything we've got, with content to help us build a world-class technology community, upgrade the capabilities and competencies of our teams, and improve overall team performance as well as their engagement.
Julian F.
Head of Cybersecurity
QuotationMarkI wanted to learn C and C++, but it didn't click for me until I picked up an O'Reilly book. When I went on the O’Reilly platform, I was astonished to find all the books there, plus live events and sandboxes so you could play around with the technology.
Addison B.
Field Engineer
QuotationMarkI’ve been on the O’Reilly platform for more than eight years. I use a couple of learning platforms, but I'm on O'Reilly more than anybody else. When you're there, you start learning. I'm never disappointed.
Amir M.
Data Platform Tech Lead
QuotationMarkI'm always learning. So when I got on to O'Reilly, I was like a kid in a candy store. There are playlists. There are answers. There's on-demand training. It's worth its weight in gold, in terms of what it allows me to do.
Mark W.
Embedded Software Engineer

You might also like

Preventing Web Attacks with Apache

Preventing Web Attacks with Apache

Ryan C. Barnett
What Successful Project Managers Do

What Successful Project Managers Do

W. Scott Cameron, Jeffrey S. Russell, Edward J. Hoffman, Alexander Laufer
How to Overcome a Power Deficit

How to Overcome a Power Deficit

Cyril Bouquet, Jean-Louis Barsoux

Publisher Resources

ISBN: 9780470916216Purchase book