[CLUE-Tech] Question on firewall output

Jeffery C. Cann jccann at home.com
Sat Mar 24 07:32:45 MST 2001


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Greetings.

All of the recent talk about security got me to look at my logs (I haven't 
for about 4 months).  I noticed about 35 syslog entries that have the 
following messages:

Packet log: input DENY eth0 PROTO=6 24.180.153.167:3339 24.6.231.152:12345 
L=52 S=0x00 I=25643 F=0x4000 T=54 SYN (#37)

I am on the @home network (24.6...).  It looks like this is a simple port 
scan.  Is it?  I understand that the packet triggered one of my 'ipchains' 
deny rules.  I am looking for additional information.

Thanks
Jeff
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.0.4 (GNU/Linux)
Comment: For info see http://www.gnupg.org

iEYEARECAAYFAjq8sBUACgkQw3/GBQk72kAO1gCeKiHQ7L5wX43o7qCXw9futyW4
gWIAnR3/oKZ/TCKDlCdTIhCTIVCYGUUj
=aSUw
-----END PGP SIGNATURE-----



More information about the clue-tech mailing list