Forum Discussion
Mindgeek
6 days agoNeighbour
Port 80 / 443 port blocking ... again
There are already a few threads with this question, I've already reviewed the relevant documentation:
https://www.telus.com/en/support/article/telus-hsia-security-measures-policy
---
Port 80 is reporting Connection Timed Out... This is not coming from my router and the tcp connection does not appear to make it to my network (confirmed by closing ports and validating with IPv6 to alternate network devices bypassing the IPv4 rewrite and NAT). Does the above doc need to be updated? I likely would not have switched to Telus if they were transparent about this blocking.
HTTP/1.1 502 Connection timed out
Date: Mon, 30 Mar 2026 16:52:06 GMT
Connection: close
Cache-Control: no-store
Content-Type: text/html
Content-Language: en
Content-Length: 219
<HEAD>
<TITLE>Connection timed out</TITLE>
</HEAD>
<BODY BGCOLOR="white" FGCOLOR="black">
<FONT FACE="Helvetica,Arial"><B> Connection timed out</B></FONT>
<!-- default "Connection timed out" response (502) -->
</BODY>
5 Replies
- MindgeekNeighbour
I am still soliciting feedback regarding this thread.
Users, if you're able please send me a screenshot of your configuration (working or not). I have a CS call booked for Thursday and would like evidence from multiple customers to understand if this is happening to just me or more broadly to everyone. As mentioned in my initial post, blocking of port 80/443 is not listed on the official support page for this service along side other specific blocks.
- TELUS_Support
Official Support Team
Have you tried using Bridge Mode + a 3rd Party Router. If this is an option for you, putting your ONT into full bridge mode and using your own hardware can sometimes bypass the local hardware's interference.
- FuzzyLogic
Community Power User
Can you elaborate on what you are trying to do?
I have set up port forwarding on my router and use alternate ports to access my NAS on my home network to avoid issues with those ports.
- MindgeekNeighbour
Have a blog, get a cert via http-01 acme protocol... Does it matter? There is an undocumented limitation that materially alters a product I have a contact for.
I have set up port forwarding on my router and use alternate ports [...] avoid issues with those ports.
Does this mean that you can't port forward port 80 as well or does this mean you're struggling with the permission of the port 80 being a reserved port? I'd like to keep focused on the technical details of this. To this end I haven't pointed out that the type of manipulation done is explicitly performed as part of inspection (as it's occurring at layer 7 and not layer 3) and that Telus has in the past spied on the personal emails of their employees.
To refocus, my goal is to either have the document linked updated or remove the transparent proxy/layer 7 firewall (running on telus routing devices) that is filtering my internet.
- FuzzyLogic
Community Power User
Certificates are assigned to domains and the ports used are irrelevant.
It's been quite some time since I setup my NAS. The recommendation was to avoid ports 80/443 as they are often targetted and it's simple enough to use alternate ports.
I believe there may be issues for residential users but there shouldn't be for business accounts.
Note that there is definitely issues testing from inside your network. See this thread: