In message <[EMAIL PROTECTED]>, "Mark E. Drummond" said:
>I get the fol msg in my logs on one host at exactly 10 minute intervals:
>
> inetd[11961]: fs/tcp: bind: Address already in use
>
>Any ideas (where to start looking?) There is nothing else in my logs
>associated with this. Started at around 3:00 PM my time.
Yep, you have 2 inetd's running.
You should try and figure out why the second one is running. Several of the
RPC exploits start a second copy of inetd.
jeffl
--
Jeffrey F. Lawhorn |Internet Consulting, Custom
Software Design Associates, Inc. |Connectivity Solutions, and
[EMAIL PROTECTED] 619-679-5900 voice |CGI programming.
http://www.wanet.net/ 619-679-2327 fax |T1's for $630/month
Finger [EMAIL PROTECTED] for PGP Public Key.
Insist on Quality! WANet.Net is an ISP/C Member - http://www.ispc.org/
PGP signature