No, no connection on Telnet either...but I don't believe I have the telnet port enabled on the firewall...I don't use telnet for anything.
I can however connect on FTP, POP3, and http...all of which are open ports on the firewall. The SMTP port (25) is open too, it just won't respond anymore. I deleted the check I had for port 25, and recreated it...and it still won't work. Jon -----Original Message----- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] Behalf Of Dirk Bulinckx Sent: Thursday, May 06, 2004 12:55 AM To: [EMAIL PROTECTED] Subject: RE: [SA-list] New Sasser worm and ICMP traffic Can you still connect using TELNET? Dirk. Don't forget to vote for Servers Alive in the annual Sunbelt Target Awards http://www.sunbelt-software.com/targetawards/ -----Original Message----- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of jmarsden Sent: Thursday, May 06, 2004 2:13 AM To: [EMAIL PROTECTED] Subject: RE: [SA-list] New Sasser worm and ICMP traffic Don't know if my current problem with SA is related to this, but figured I would give it a try. I had one of my engineers check all of my customer's firewalls to check out the port 445 situation, making sure they were blocked against the Sasser worm. We were only looking at the firewalls for this particular port, and didn't make any other changes in the network infrastructure for that customer. The external TCP port check I was doing for SMPT (port 25) from outside the firewall quit working. By external, I mean that I was checking port 25 inside the firewall, from a computer running SA, outside the firewall. Regardless of how I try to tweak that check, I can't make it see TCP port 25 anymore...any suggestions? Jonathan Marsden -----Original Message----- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] Behalf Of Travis Rabe Sent: Tuesday, May 04, 2004 4:54 PM To: [EMAIL PROTECTED] Subject: RE: [SA-list] New Sasser worm and ICMP traffic > Hello, > > Our area ISPs have started blocking ICMP traffic with approximately > 60-byte packet size as this is a signature of W32.Sasser traffic. As a > result, there OC3 is no longer failing, but this blocks all Servers Alive > ping packets. > > Is there a way to alter the size of the packet from Servers Alive? Or > another test to use that would make the packet larger?? Sorry - Tech Support Just Answered It By default the size we use is 32 bytes. (that's for the data part of the ICMP frame). You can change this by creating: HKEY_LOCAL_MACHINE\SOFTWARE\DBU Consulting\Servers Alive\PingSize (string) And give it the value you want to have for the data part. (a restart of Servers Alive is needed). > > Thanks, > > ----------------------------- > Travis Rabe > > > --- > [This E-mail scanned for viruses by Declude Virus] > > To unsubscribe from a list, send a mail message to [EMAIL PROTECTED] > With the following in the body of the message: > unsubscribe SAlive > --- [This E-mail scanned for viruses by Declude Virus] To unsubscribe from a list, send a mail message to [EMAIL PROTECTED] With the following in the body of the message: unsubscribe SAlive ---------------------------------------- My Inbox is protected by SPAMfighter 442 spam mails have been blocked so far. Download free www.spamfighter.com today! To unsubscribe from a list, send a mail message to [EMAIL PROTECTED] With the following in the body of the message: unsubscribe SAlive To unsubscribe from a list, send a mail message to [EMAIL PROTECTED] With the following in the body of the message: unsubscribe SAlive ---------------------------------------- My Inbox is protected by SPAMfighter 443 spam mails have been blocked so far. Download free www.spamfighter.com today! To unsubscribe from a list, send a mail message to [EMAIL PROTECTED] With the following in the body of the message: unsubscribe SAlive
