Hi everybody,
I just tested my DMZ from the outside with an extra internet connection. I noticed that port 21 and port 443 showed up as open.
I don't know what the heck port 21 does there, a connection is not possible, and I can see the droplogs in the packet filter log.
But what drives me crazy is that port 443 is open to the whole world and everybody gets the ASL login prompt when browsing to HTTPS://myip-or-dns-name-of-the-ASL.
As I noticed that port 443 is fully open I created a dumb packet filter rule droping all incoming connections to the outer and inner DMZ interface. The port was still accessible from the internet.
What is going on here? Please be so kind and enlighten me! ;-)
Michael
This thread was automatically locked due to age.