Laplacian 0 Posted March 31 Share Posted March 31 Hi, So I scanned all my machines on my network, and it showed that my computer has the port 53 DNS domain port open? Is this normal, as I think that I haven't seen that being open before if I remember correctly. And even if it is open, shouldn't ESET prevent showing that it is open? Quote Link to comment Share on other sites More sharing options...
Most Valued Members Nightowl 205 Posted March 31 Most Valued Members Share Posted March 31 20 minutes ago, Laplacian said: Hi, So I scanned all my machines on my network, and it showed that my computer has the port 53 DNS domain port open? Is this normal, as I think that I haven't seen that being open before if I remember correctly. And even if it is open, shouldn't ESET prevent showing that it is open? May I ask how did you scan? did you use Nmap for example or ESET built in scanner? Quote Link to comment Share on other sites More sharing options...
Laplacian 0 Posted March 31 Author Share Posted March 31 1 minute ago, Nightowl said: May I ask how did you scan? did you use Nmap for example or ESET built in scanner? I scanned with phone where I have paid app called Net Analyzer Quote Link to comment Share on other sites More sharing options...
Most Valued Members Nightowl 205 Posted March 31 Most Valued Members Share Posted March 31 Just now, Laplacian said: I scanned with phone where I have paid app called Net Analyzer I don't know this application , but try to use LTE/4G connection when attempting to scan your IP , that will show your firewall that you are outsider scanning , scanning from the LAN to WAN IP , will show wrong results if I am not mistaken. Quote Link to comment Share on other sites More sharing options...
Laplacian 0 Posted March 31 Author Share Posted March 31 1 minute ago, Nightowl said: I don't know this application , but try to use LTE/4G connection when attempting to scan your IP , that will show your firewall that you are outsider scanning , scanning from the LAN to WAN IP , will show wrong results if I am not mistaken. I scanned the machine inside my LAN with another LAN device. As for the public IP, I will try to scan outside my LAN. I will post when I have done that thanks. Quote Link to comment Share on other sites More sharing options...
Most Valued Members Nightowl 205 Posted March 31 Most Valued Members Share Posted March 31 1 minute ago, Laplacian said: I scanned the machine inside my LAN with another LAN device. As for the public IP, I will try to scan outside my LAN. I will post when I have done that thanks. Yes while connected from LAN , see your IP from whatismyip websites , then disconnect from your WIFI home , and then scan the WAN IP that you got from the website , it should how you the results from Outside > to your side I think inside the LAN , since it's trusted , ports can communicate with eachother unless it's instructed by the personal firewall on the devices (like ESET or windows firewall) to disable certain ports from communicating. Quote Link to comment Share on other sites More sharing options...
Laplacian 0 Posted March 31 Author Share Posted March 31 2 hours ago, Nightowl said: Yes while connected from LAN , see your IP from whatismyip websites , then disconnect from your WIFI home , and then scan the WAN IP that you got from the website , it should how you the results from Outside > to your side I think inside the LAN , since it's trusted , ports can communicate with eachother unless it's instructed by the personal firewall on the devices (like ESET or windows firewall) to disable certain ports from communicating. I now scanned the external IP from LTE/4G device and it didn't show no ports or even any host up. Then I also scanned my LAN again using NMAP and the device inside my network seems to have the port 53 open indeed, but it is TCPwrapped. I do not know why does show that one port. But I trust ESET so its all good thanks for the help Quote Link to comment Share on other sites More sharing options...
Laplacian 0 Posted March 31 Author Share Posted March 31 2 hours ago, Nightowl said: Yes while connected from LAN , see your IP from whatismyip websites , then disconnect from your WIFI home , and then scan the WAN IP that you got from the website , it should how you the results from Outside > to your side I think inside the LAN , since it's trusted , ports can communicate with eachother unless it's instructed by the personal firewall on the devices (like ESET or windows firewall) to disable certain ports from communicating. Also I forgot to mention that my network is either way a LTE/4G network and not a fiber Quote Link to comment Share on other sites More sharing options...
Most Valued Members Nightowl 205 Posted March 31 Most Valued Members Share Posted March 31 7 hours ago, Laplacian said: I now scanned the external IP from LTE/4G device and it didn't show no ports or even any host up. Then I also scanned my LAN again using NMAP and the device inside my network seems to have the port 53 open indeed, but it is TCPwrapped. I do not know why does show that one port. But I trust ESET so its all good thanks for the help You are welcome About port 53 , try to check that device and see the firewall rules for port 53 TCP , it shouldn't be open for DNS unless that device serves something or it's open by mistake. Quote Link to comment Share on other sites More sharing options...
Laplacian 0 Posted April 2 Author Share Posted April 2 On 3/31/2024 at 10:50 PM, Nightowl said: You are welcome About port 53 , try to check that device and see the firewall rules for port 53 TCP , it shouldn't be open for DNS unless that device serves something or it's open by mistake. I denied all communication on that port in ESET firewall configuration, and the scan still shows it is open. My Windows firewall machine on the other hand shows no ports open or they are blocked, so I am pretty worried that the ESET firewall is providing that information for the scanner. And I looked that there was legitimate communication on that port, which I am not really sure what the communication is needed for. Quote Link to comment Share on other sites More sharing options...
itman 1,668 Posted April 2 Share Posted April 2 1 hour ago, Laplacian said: denied all communication on that port in ESET firewall configuration, and the scan still shows it is open. Eset firewall use has no bearing on if a port is open or closed. The router controls this. My best guess is you have a device on your network that has port 53 access capability. Eset Network Inspector should show you which device; other than the router, that has this capability. Quote Link to comment Share on other sites More sharing options...
Most Valued Members Nightowl 205 Posted April 4 Most Valued Members Share Posted April 4 On 4/2/2024 at 5:50 PM, itman said: Eset firewall use has no bearing on if a port is open or closed. The router controls this. True and shouldn't be open as your home network doesn't serve DNS to people outside. Quote Link to comment Share on other sites More sharing options...
Recommended Posts
Join the conversation
You can post now and register later. If you have an account, sign in now to post with your account.
Note: Your post will require moderator approval before it will be visible.