According to http://www.isi.edu/in-notes/iana/assignments/port-numbers
cpq-wbem 2301/tcp Compaq HTTP cpq-wbem 2301/udp Compaq HTTP Regards, /Karl ----------------------------------------------------------------------- Karl Hammar Aspö Data [EMAIL PROTECTED] Lilla Aspö 2340 +46 173 140 57 Networks S-742 94 Östhammar +46 10 270 26 67 Computers Sweden Consulting ----------------------------------------------------------------------- From: "David Priban" <[EMAIL PROTECTED]> Subject: Packet log Date: Tue, 27 Mar 2001 02:16:38 -0500 > I have been seeing a lot of these entries in my logs lately. > Could this be some sort of legitimate traffic triggering this ipchains rule? > Or is it just plain spoofing attempt by someone? > > Thanks David > > kernel: Packet log: input DENY eth1 PROTO=17 127.0.0.1:2301 > 255.255.255.255:2301 L=240 S=0x00 I=674 F=0x0000 T=128 (#2) > kernel: Packet log: input DENY eth1 PROTO=17 127.0.0.1:2301 > 255.255.255.255:2301 L=40 S=0x00 I=801 F=0x0000 T=128 (#2) > > > -- > To UNSUBSCRIBE, email to [EMAIL PROTECTED] > with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]