ciao a tutti, sul mio server (woody) ultimamente mi stanno arrivando questi messaggi. ...che significano? Dibito che si tratti di un attacco... il firewall me lo avrebbe notificato, e su questa macchina ci accedo solo io (ssh) e mia moglie (ftp e http)
ciao, MAX This mail is sent by logcheck. If you do not want to receive it any more, please modify the configuration files in /etc/logcheck or deinstall logcheck. Possible Security Violations =-=-=-=-=-=-=-=-=-= Sep 10 09:02:02 debian-ppc kernel: IN from bad port 41d at c010eba0 Sep 10 09:02:13 debian-ppc kernel: IN from bad port 41d at c010eba0 Sep 10 09:02:17 debian-ppc kernel: IN from bad port 41d at c010eba0 Sep 10 09:08:01 debian-ppc kernel: IN from bad port 41d at c010eba0 Sep 10 09:23:01 debian-ppc kernel: IN from bad port 41d at c010eba0 Sep 10 09:38:01 debian-ppc kernel: IN from bad port 41d at c010eba0 Sep 10 09:53:01 debian-ppc kernel: IN from bad port 41d at c010eba0 Unusual System Events =-=-=-=-=-=-=-=-=-=-= Sep 10 09:02:02 debian-ppc kernel: IN from bad port 41d at c010eba0 Sep 10 09:02:13 debian-ppc kernel: IN from bad port 41d at c010eba0 Sep 10 09:02:17 debian-ppc kernel: IN from bad port 41d at c010eba0 Sep 10 09:08:01 debian-ppc kernel: IN from bad port 41d at c010eba0 Sep 10 09:23:01 debian-ppc kernel: IN from bad port 41d at c010eba0 Sep 10 09:38:01 debian-ppc kernel: IN from bad port 41d at c010eba0 Sep 10 09:53:01 debian-ppc kernel: IN from bad port 41d at c010eba0

