OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
From: Peter Pentchev (roamorbitel.bg)
Date: Fri Jun 29 2001 - 10:04:02 CDT

  • Messages sorted by: [ date ] [ thread ] [ subject ] [ author ]

    On Fri, Jun 29, 2001 at 09:49:54AM -0500, George.Gilesmcmail.vanderbilt.edu wrote:
    > What is ipfw telling me ?
    >
    > The 216 host is attempting to break in, but how is it using port 80 on the
    > other machine ?
    >
    > ipfw: 2400 Deny TCP 216.239.46.20:21602 10.0.0.1:80 in via xl0

    The host 216.239.46.20 is trying to connect to 10.0.0.1; the connection
    attempt is from port 21602 (ephemeral, unique to this connection in
    a certain timeframe) to port 80 on 10.0.0.1. That is, someone from
    216.239.46.20 is trying to browse the web on 10.0.0.1.

    G'luck,
    Peter

    -- 
    This sentence claims to be an Epimenides paradox, but it is lying.
    

    To Unsubscribe: send mail to majordomoFreeBSD.org with "unsubscribe freebsd-security" in the body of the message