Mon, 17 Jan 2000 19:12:01 +0100,  Marc Mutz <[EMAIL PROTECTED]> wrote:

>You can let SAINT scan your ports for you and tell you what's not right.
>You can run tcplogd to alarm you of portscans and so on.
>You can insert a logging rule at the end of the (policy: REJECT/DENY)
>input/output/forwarding chains, to log all rejected packets
>
>$ ipchains -A input -l
>$ ipchains -A output -l
>$ ipchains -A forward -l

Yep, that works great, thanks Marc.

Of course now I'll have to buy a new HDD to store my expanding log
files :-)


BTW: not sure what the policy is on replying. Do people like replies
to go just to the list or to the List + Sender ?

Reply via email to