Re: Logging packets from iptables

2001-05-23 Thread Steve Greenland
On 22-May-01, 16:50 (CDT), Chris Boyle [EMAIL PROTECTED] wrote: Firstly be aware that these are probably just responses from web servers you're browsing if they don't have the SYN (establish connection) flag set (80 is http). Nope. Port 80 is http _server_ -- this is port web servers

Re: Logging packets from iptables

2001-05-23 Thread Nathan E Norman
On Wed, May 23, 2001 at 05:18:04PM +0200, Simon Huggins wrote: On Tue, May 22, 2001 at 08:37:26PM +0100, Dave Smith wrote: (Please do not CC me on mail sent to this list; I subscribe to and read every list I post to.) But do you read every post of every list you post to? (sorry it was

Re: Logging packets from iptables

2001-05-23 Thread Steve Greenland
On 22-May-01, 16:50 (CDT), Chris Boyle [EMAIL PROTECTED] wrote: Firstly be aware that these are probably just responses from web servers you're browsing if they don't have the SYN (establish connection) flag set (80 is http). Nope. Port 80 is http _server_ -- this is port web servers

Re: Logging packets from iptables

2001-05-23 Thread Simon Huggins
On Tue, May 22, 2001 at 08:37:26PM +0100, Dave Smith wrote: ... originating from port 80 of different computers on the internet. ^ On Wed, May 23, 2001 at 08:56:55AM -0500, Steve Greenland wrote: On 22-May-01, 16:50 (CDT), Chris Boyle [EMAIL PROTECTED] wrote: Firstly

Re: Logging packets from iptables

2001-05-23 Thread Nathan E Norman
On Wed, May 23, 2001 at 05:18:04PM +0200, Simon Huggins wrote: On Tue, May 22, 2001 at 08:37:26PM +0100, Dave Smith wrote: (Please do not CC me on mail sent to this list; I subscribe to and read every list I post to.) But do you read every post of every list you post to? (sorry it was too

Re: Logging packets from iptables

2001-05-23 Thread Steve Greenland
On 23-May-01, 10:18 (CDT), Simon Huggins [EMAIL PROTECTED] wrote: On Tue, May 22, 2001 at 08:37:26PM +0100, Dave Smith wrote: originating from port 80 of different computers on the internet. ^ [snip] web browsers send requests to. Replies from web servers do not

Logging packets from iptables

2001-05-22 Thread Dave Smith
I have recieved several packets on my little firewall originating from port 80 of different computers on the internet. Can I use iptables to log the contents of these packets, or how should I setup tcpdump or similar to dump the packet and the drop it? -- Dave Smith -- To UNSUBSCRIBE,

Re: Logging packets from iptables

2001-05-22 Thread Philipp Schulte
On Tue, May 22, 2001 at 10:50:24PM +0100, Chris Boyle wrote: Firstly be aware that these are probably just responses from web servers you're browsing if they don't have the SYN (establish connection) flag set (80 is http). If the syn flag _is_ set, and the _source_ port is 80, they may

Logging packets from iptables

2001-05-22 Thread Dave Smith
I have recieved several packets on my little firewall originating from port 80 of different computers on the internet. Can I use iptables to log the contents of these packets, or how should I setup tcpdump or similar to dump the packet and the drop it? -- Dave Smith

Re: Logging packets from iptables

2001-05-22 Thread Chris Boyle
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 On Tuesday 22 May 2001 8:37 pm, Dave Smith wrote: I have recieved several packets on my little firewall originating from port 80 of different computers on the internet. Can I use iptables to log the contents of these packets, or how should I setup

Re: Logging packets from iptables

2001-05-22 Thread Philipp Schulte
On Tue, May 22, 2001 at 10:50:24PM +0100, Chris Boyle wrote: Firstly be aware that these are probably just responses from web servers you're browsing if they don't have the SYN (establish connection) flag set (80 is http). If the syn flag _is_ set, and the _source_ port is 80, they may