Michael Stauber <[EMAIL PROTECTED]> said:
> Hi Jason,
>
> > I don't have an answer but how do you recognise when you have been
> > port-scanned?
>
> I use a tool called Portsentry (www.psionic.com). It can detect, report and
> block portscans. However, the usage of portsentry is usually frowned upon
> by some very vocal list members here.
>
Never really understood that. If you have a daily/weekly cron job that cleans
your hosts.deny and ipchains, how bad? And why shouldn't people run what
_they_ want on _their_ server? I just don't get it. Maybe someone should
explin it to me?
adam
PS. Can I start an argument about Reply-to munging next?
_______________________________________________
cobalt-security mailing list
[EMAIL PROTECTED]
http://list.cobalt.com/mailman/listinfo/cobalt-security