一个伪linux粉丝的blog

  1. 首页
  2. unix/linux
  3. 正文

ERR_UNSAFE_PORT

24 1 月, 2022 1184点热度 0人点赞 0条评论

这2天在折腾内网端口转发,frp 、ngrok,参考网上资料端口中填了一个熟悉的端口10080 ,跑起来才想起哪里不对,浏览器报错 ERR_UNSAFE_PORT,翻了一下半年前的笔记。

当时这么记录的,查看访问失败的页面,有 “ERR_UNSAFE_PORT ” 字样,这种是浏览器自身屏蔽了,这是一个特殊的端口 10080. 在 2020.11 月被 谷歌和火狐开始拦截了。

解决方法如下:

1, 不要使用这种特殊端口,修改为正常的 8080 或 80,或者大一点的端口。

2,修改浏览器不安全端口范围, 参见 https://thegeekpage.com/err-unsafe-port/

https://www.bleepingcomputer.com/news/security/google-chrome-blocks-port-10080-to-stop-nat-slipstreaming-attacks/

As this vulnerability only works on specific ports monitored by a router's Application Level Gateway (ALG), browser developers have been blocking vulnerable ports that do not receive a lot of traffic.

Currently, Google Chrome is blocking FTP, HTTP, and HTTPS access on ports 69, 137, 161, 554, 1719, 1720, 1723, 5060, 5061, and 6566.

Today, Google has stated that they intend to block TCP port 10080 in Chrome, which Firefox has already blocked since November 2020.

In discussions regarding whether the port should be blocked, browser developers determined that the Amanda backup software and VMWare vCenter utilize the port but would not be affected by the block.

The most concerning point regarding blocking port 10080 is that some developers may utilize it as an alternative to port 80.

本地做了几组测试,10080确实被拦截,用户换成10081或10088等非特殊端口都可以通过的,问题解决。

相关文章:

  1. aws ec2 instance terminate
  2. how to root Android 11 on your Pixel 3XL
  3. CentOS Kernel Upgrade
  4. How to check container id through dm disk path
标签: 暂无
最后更新:24 1 月, 2022

wanjie

这个人很懒,什么都没留下

点赞
< 上一篇
下一篇 >

文章评论

razz evil exclaim smile redface biggrin eek confused idea lol mad twisted rolleyes wink cool arrow neutral cry mrgreen drooling persevering
取消回复

This site uses Akismet to reduce spam. Learn how your comment data is processed.

归档
分类
  • network / 332篇
  • Uncategorized / 116篇
  • unix/linux / 121篇
  • 业界资讯 / 38篇
  • 公司杂事 / 11篇
  • 数码影像 / 12篇
  • 美剧 / 3篇
  • 美图共赏 / 21篇
  • 英语学习 / 3篇
标签聚合
泰国 dreamhost空间 kubectl 网站运营 dreamhost 邮件归档 gitlab Nginx docker 虚拟主机 wget k8s openssl kernel jira ldap ssh postgres 浏览器 Ubuntu nexus VPS squid Google Voice 天翼live deepseek google-chrome debian d90 Google

COPYRIGHT © 2008-2025 wanjie.info. ALL RIGHTS RESERVED.

Theme Kratos Made By Seaton Jiang