[techtalk] Re: REJECT packet is logged as DENY....

Rick Scott rick at shadowspar.dyndns.org
Tue Mar 20 00:34:25 EST 2001


(Subba Rao:)
> > 
> >>  Mar 18 18:39:48 pasta kernel: Packet log: input DENY eth2 PROTO=6 
> >>  24.24.63.86:62779 10.23.86.125:113 L=60 S=0x00 I=26383 F=0x4000
> >>  T=52 SYN (#11)

(coldfire:)
> if the kernel's logging it .. i'm assuming it's a 2.4.x kernel, and 
> therfore this person better be using iptables ;P

Subba didn't mention what kernel zie was running, but I've still 
got 2.2.17, and my logfiles look the same: 

shadow> ./packets
Mar 19 08:01:16 shadowspar kernel: Packet log: input - ppp0 PROTO=6 61.6.130.145:4480 64.230.122.92:1080 L=48 S=0x00 I=8854 F=0x4000 T=113 SYN (#16)
Mar 19 08:32:22 shadowspar kernel: Packet log: input DENY ppp0 PROTO=6 200.202.38.27:2336 64.230.122.92:111 L=60 S=0x00 I=61932 F=0x4000 T=45 SYN (#14)
Mar 19 09:37:52 shadowspar kernel: Packet log: input - ppp0 PROTO=6 195.92.249.252:2573 64.230.122.92:25 L=60 S=0x00 I=56226 F=0x4000 T=37 SYN (#16)
shadow> uname -a
Linux shadowspar 2.2.17 #1 Fri Feb 9 09:58:34 EST 2001 i586 unknown

I am told that iptables is most groovy, but I haven't had any 
experience with it yet...


Rick
-- 
key CF8F8A75 / print C5C1 F87D 5056 D2C0 D5CE  D58F 970F 04D1 CF8F 8A75 
There is no expedient to which man will not resort to avoid the real
labour of thinking.
     :Thomas Edison




More information about the Techtalk mailing list