paket za zatwawqne na wryzka ot port 80 do nqkakyv visok port znachi e imalo tcp connection m/u twoeto ip:32898 i 10.6.6.24:80. primerno ako si se dialupnal predi po-malko ot 15 minuti moje predishniq chowek na towa ip da e imal connection. ili stawa nqkakwa druga prostotiq koqto w momenta ne moga da si predstawq.
10.6.6.24 e chast ot 10.0.0.0/8 koeto spored ljubimoto im rfc 1918 e edin ot blokowete adresi zadeleni za chastni celi. providera ti ili nqkoj negow klient moje da polzwa takiwa adresi. I se schita za bug w providera che ne se e setil da filtrira takiwa adresi kym/ot klientite si. BR, Boyan > -----Original Message----- > From: Niki Delev [mailto:[EMAIL PROTECTED]] > Sent: Wednesday, October 10, 2001 12:10 PM > To: [EMAIL PROTECTED] > Subject: lug-bg: iptables log/ulog scenario > > > abe hora, niakoi vijdal li e takova neshto: > > Oct 9 22:48:04 saphead kernel: IN=ppp0 OUT= MAC= > SRC=10.6.6.24 DST=myip LEN=568 TOS=0x00 PREC=0x00 > TTL=42 ID=26365 DF PROTO=TCP SPT=80 DPT=32898 > WINDOW=6432 RES=0x00 ACK PSH FIN URGP=0 > > SRC=10.6.6.24 ?? > > tova e log ot netfilter/ipt, syshtoto idva i ot ulogd. > niamam lan, 100% ne e spoofed source-a. navyn imam > route, pri traceroute/tracepath do vynshen host niama > 10.x.x.x neshta. idei!? > > - ND > > __________________________________________________ > Do You Yahoo!? > Make a great connection at Yahoo! Personals. > http://personals.yahoo.com > ============================================================== > ============= > A mail-list of Linux Users Group - Bulgaria (bulgarian linuxers) > http://www.linux-bulgaria.org/ Hosted by Internet Group Ltd. > - Stara Zagora > =========================================================================== A mail-list of Linux Users Group - Bulgaria (bulgarian linuxers) http://www.linux-bulgaria.org/ Hosted by Internet Group Ltd. - Stara Zagora
