Hello Patrascu, Wednesday, December 3, 2003, 10:32:39 AM, you wrote:
PE> On Tue, 2003-12-02 at 23:10, andy.rlug wrote: >> Hello rlug, >> >> am bagat ip/mac in /etc/ether, am rulat arp -f >> am instalat si arpwatch(care functioneaza...) >> >> 192.168.1.5 00:50:11:32:1E:C8 >> >> si acum vad ca s-a conectat cineva: >> >> /var/log/secure >> Dec 1 11:16:57 home sshd[13012]: Accepted password for root from 169.254.235.91 >> port 1055 >> >> /var/log/messages >> Dec 1 11:14:36 home arpwatch: bogon 169.254.235.91 00:50:11:32:1E:C8 PE> PE> ^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^ PE> citeste de mai multe ori mesajul de mai sus. "arp -f" face ca un calculator daca-si schimba MAC-ul si ramane cu ip-ul diferit de ce in /etc/ethers sa nu-i mai raspunda serverul.... tipu si-a schimbat doar MAC-ul si are IP-ul diferit de perechea din /etc/ethers deci ar fi trebuit ca sa nu se poata loga! -- Best regards, andy.rlug mailto:[EMAIL PROTECTED] --- Detalii despre listele noastre de mail: http://www.lug.ro/
