This sounds like your NT system has not been properly harden. Here is a doc
I use for hardening NT systems. I have installed several (15) Checkpoint
firewalls on NT and after hardening them, they work flawlessly.
-----Original Message-----
From: Ralf Guenthner [mailto:[EMAIL PROTECTED]]
Sent: Friday, October 13, 2000 7:28 AM
To: [EMAIL PROTECTED]
Subject: [FW1] NT talking with NBNAME to whole world?
Hi list
Another neat problem on an NT firewall system I "inherited": I noticed after
activating the logging for the standard drop rule that the firewall system
itself was talking Netbios nbname service to systems in Argentina, USA asf.
I stopped that by unchecking "Accept outgoing packets" and setting the
interface direction to "eitherbound".
My question is: Why would this system do that, has it probably already been
hacked? There were so many different sites it was doing the nbname to I
wonder what it means?
Cheers
Ralf
============================================================================
====
To unsubscribe from this mailing list, please see the instructions at
http://www.checkpoint.com/services/mailing.html
============================================================================
====
Securing Windows NT.doc