hello chris,
i am not too much of a frequent replier but thought i'd help when i can:
Proto=17 (udp connection)
also looks like something going to port 1177 and port 111 (broadcast) at the
same time.
============================original
message====================================
Date: Tue, 18 Apr 2000 10:06:28 -0400
From: "Chris Mason" <[EMAIL PROTECTED]>
Subject: log entry
I have a pmfirewall setup on a linux machine (OLDJOE)
to protect
my intranet. The external IP is 209.88.68.237
I have a server (DATA.AI) whose IP is 209.88.68.46 and
is a webserver with FTP and SSH.
I get the following entry in my firewall logs every few
seconds,
can you help figure out what it means?
**************************************************************
Apr 18 10:11:51 OLDJOE kernel: Packet log: input DENY
eth1 PROTO=17 209.88.68.46:1177 209.88.68.255:111 L=124 S=0x00 I=10448
F=0x00
00 T=64 (#36)
**************************************************************
Chris Mason
Box 340, The Valley, Anguilla, British West Indies
Tel: 264 497 5670 Fax: 264 497 8463
USA Fax (561) 382-7771
Take a virtual tour of the island
http://net.ai/ The Anguilla Guide
Find out more about NetConcepts
www.netconcepts.ai
bwz*mq
_______________________________________________________
Get 100% FREE Internet Access powered by Excite
Visit http://freelane.excite.com/freeisp
-
[To unsubscribe, send mail to [EMAIL PROTECTED] with
"unsubscribe firewalls" in the body of the message.]