Re: Question about ipchains

2001-03-27 Thread Alson van der Meulen
On Tue, Mar 27, 2001 at 09:41:49AM -0800, Tom Marshall wrote: > > > > protocols that require incoming connections are lame anyway > > > > > > unfortunatly many do this. > > not so many... active ftp, irc/dcc... some online gaming thingies... > > more? > > Pretty much any peer-peer program (irc/

Re: Question about ipchains

2001-03-27 Thread Alson van der Meulen
On Tue, Mar 27, 2001 at 09:41:49AM -0800, Tom Marshall wrote: > > > > protocols that require incoming connections are lame anyway > > > > > > unfortunatly many do this. > > not so many... active ftp, irc/dcc... some online gaming thingies... > > more? > > Pretty much any peer-peer program (irc

Re: Question about ipchains

2001-03-27 Thread Tom Marshall
> > > protocols that require incoming connections are lame anyway > > > > unfortunatly many do this. > not so many... active ftp, irc/dcc... some online gaming thingies... > more? Pretty much any peer-peer program (irc/dcc is just the best example of it). For example, all IM apps that I am awar

Re: Question about ipchains

2001-03-27 Thread Tom Marshall
> > > protocols that require incoming connections are lame anyway > > > > unfortunatly many do this. > not so many... active ftp, irc/dcc... some online gaming thingies... > more? Pretty much any peer-peer program (irc/dcc is just the best example of it). For example, all IM apps that I am awa

Re: Packet log

2001-03-27 Thread Karl Hammar
According to http://www.isi.edu/in-notes/iana/assignments/port-numbers cpq-wbem2301/tcp Compaq HTTP cpq-wbem2301/udp Compaq HTTP Regards, /Karl --- Karl HammarAspö Data [

Re: Packet log

2001-03-27 Thread Karl Hammar
According to http://www.isi.edu/in-notes/iana/assignments/port-numbers cpq-wbem2301/tcp Compaq HTTP cpq-wbem2301/udp Compaq HTTP Regards, /Karl --- Karl HammarAspö Data

Re: Question about ipchains

2001-03-27 Thread Alson van der Meulen
On Tue, Mar 27, 2001 at 12:13:08AM -0900, Ethan Benson wrote: > On Tue, Mar 27, 2001 at 10:05:00AM +0200, Alson van der Meulen wrote: > > > > for irc: i never had problems with it, just accept ident lookups and > > all outgoing stuff > > ever try dcc ? i don't dcc, just mail to transfer files >

Re: Question about ipchains

2001-03-27 Thread Ethan Benson
On Tue, Mar 27, 2001 at 10:05:00AM +0200, Alson van der Meulen wrote: > > for irc: i never had problems with it, just accept ident lookups and > all outgoing stuff ever try dcc ? > protocols that require incoming connections are lame anyway unfortunatly many do this. -- Ethan Benson http://

Re: Question about ipchains

2001-03-27 Thread Alson van der Meulen
On Tue, Mar 27, 2001 at 12:13:08AM -0900, Ethan Benson wrote: > On Tue, Mar 27, 2001 at 10:05:00AM +0200, Alson van der Meulen wrote: > > > > for irc: i never had problems with it, just accept ident lookups and > > all outgoing stuff > > ever try dcc ? i don't dcc, just mail to transfer files >

Re: Packet log

2001-03-27 Thread Alson van der Meulen
On Tue, Mar 27, 2001 at 02:16:38AM -0500, David Priban wrote: > I have been seeing a lot of these entries in my logs lately. > Could this be some sort of legitimate traffic triggering this ipchains rule? > Or is it just plain spoofing attempt by someone? > > Thanks David > > kernel: Packet log:

Re: Question about ipchains

2001-03-27 Thread Alson van der Meulen
On Mon, Mar 26, 2001 at 04:27:00PM -0900, Ethan Benson wrote: > On Mon, Mar 26, 2001 at 08:01:34PM +0200, Alson van der Meulen wrote: > > > It accepts all other traffic to non-privileged ports. i prefer to > > allow traffic without the syn flag (not initiating a new connection) > > only, not all m

Packet log

2001-03-27 Thread David Priban
I have been seeing a lot of these entries in my logs lately. Could this be some sort of legitimate traffic triggering this ipchains rule? Or is it just plain spoofing attempt by someone? Thanks David kernel: Packet log: input DENY eth1 PROTO=17 127.0.0.1:2301 255.255.255.255:2301 L=240 S=0x00 I=

Re: Question about ipchains

2001-03-27 Thread Ethan Benson
On Tue, Mar 27, 2001 at 10:05:00AM +0200, Alson van der Meulen wrote: > > for irc: i never had problems with it, just accept ident lookups and > all outgoing stuff ever try dcc ? > protocols that require incoming connections are lame anyway unfortunatly many do this. -- Ethan Benson http:/