Hei! Firstly, i am a linux newbie. I have a small network of computers here, which i have to look after. This network is connected to internet via debian woody firewall. This firewall is being portscanned quite often. Those scans originated from a computer, which has same ISP as me. As far as i can tell, my firewall has not being compromised in any way. If those scans were prelude to some kind of attack, this attack either never took place or it failed. So my question is: what should i do? Should i report this to my ISP? Should i block the IP address of the scanner? (This is probably bad idea, since we have here dynamic IP-addresses) I don't want to overreact in any way. I am very new at this network security administrator field.
TIA. Namarie! Juhan -- In the early morning hour, when the pub was closing, my grandpa emptied his tankard, stood up and said his famous words: We've been friends for a very long time, what say you we call it quits? http://www.hot.ee/oppalilli/