Forum Discussion

Mindgeek's avatar
Mindgeek
Neighbour
6 days ago

Port 80 / 443 port blocking ... again

There are already a few threads with this question, I've already reviewed the relevant documentation:

https://www.telus.com/en/support/article/telus-hsia-security-measures-policy

---

Port 80 is reporting Connection Timed Out...  This is not coming from my router and the tcp connection does not appear to make it to my network (confirmed by closing ports and validating with IPv6 to alternate network devices bypassing the IPv4 rewrite and NAT).  Does the above doc need to be updated?  I likely would not have switched to Telus if they were transparent about this blocking.

HTTP/1.1 502 Connection timed out
Date: Mon, 30 Mar 2026 16:52:06 GMT
Connection: close
Cache-Control: no-store
Content-Type: text/html
Content-Language: en
Content-Length: 219

<HEAD>
<TITLE>Connection timed out</TITLE>
</HEAD>
<BODY BGCOLOR="white" FGCOLOR="black">
<FONT FACE="Helvetica,Arial"><B> Connection timed out</B></FONT>
<!-- default "Connection timed out" response (502) -->
</BODY>

 

5 Replies

  • I am still soliciting feedback regarding this thread.

    Users, if you're able please send me a screenshot of your configuration (working or not).  I have a CS call booked for Thursday and would like evidence from multiple customers to understand if this is happening to just me or more broadly to everyone.  As mentioned in my initial post, blocking of port 80/443 is not listed on the official support page for this service along side other specific blocks.

     

    • TELUS_Support's avatar
      TELUS_Support
      Icon for Official Support Team rankOfficial Support Team

      Have you tried using Bridge Mode + a 3rd Party Router. If this is an option for you, putting your ONT into full bridge mode and using your own hardware can sometimes bypass the local hardware's interference.

  • FuzzyLogic's avatar
    FuzzyLogic
    Icon for Community Power User rankCommunity Power User

    Can you elaborate on what you are trying to do?

    I have set up port forwarding on my router and use alternate ports to access my NAS on my home network to avoid issues with those ports.

    • Mindgeek's avatar
      Mindgeek
      Neighbour

      Have a blog, get a cert via http-01 acme protocol... Does it matter?  There is an undocumented limitation that materially alters a product I have a contact for.

      I have set up port forwarding on my router and use alternate ports [...] avoid issues with those ports.

      Does this mean that you can't port forward port 80 as well or does this mean you're struggling with the permission of the port 80 being a reserved port?  I'd like to keep focused on the technical details of this.  To this end I haven't pointed out that the type of manipulation done is explicitly performed as part of inspection (as it's occurring at layer 7 and not layer 3) and that Telus has in the past spied on the personal emails of their employees.  

      To refocus, my goal is to either have the document linked updated or remove the transparent proxy/layer 7 firewall (running on telus routing devices) that is filtering my internet.

      • FuzzyLogic's avatar
        FuzzyLogic
        Icon for Community Power User rankCommunity Power User

        Certificates are assigned to domains and the ports used are irrelevant.

        It's been quite some time since I setup my NAS. The recommendation was to avoid ports 80/443 as they are often targetted and it's simple enough to use alternate ports.

        I believe there may be issues for residential users but there shouldn't be for business accounts.

        Note that there is definitely issues testing from inside your network. See this thread:

        Hairpin Nat on Telus WIFI hub modem | TELUS Neighbourhood