Re: Need help analyzing firewall log message

2000-09-19 Thread Robert Mognet
Hello, On Thu, Sep 14, 2000 at 07:59:08PM +0200, Christian Pernegger wrote: > Sep 14 19:41:44 jesus kernel: Packet log: \ > input DENY eth1 PROTO=1 10.34.15.1:3 x.x.x.x:13 L=56 S=0x00 I=3405 F=0x > T=255 (#4) For ICMP protocol packets, the number following the source address should be the ICM

Re: Need help analyzing firewall log message

2000-09-19 Thread Robert Mognet
Hello, On Thu, Sep 14, 2000 at 07:59:08PM +0200, Christian Pernegger wrote: > Sep 14 19:41:44 jesus kernel: Packet log: \ > input DENY eth1 PROTO=1 10.34.15.1:3 x.x.x.x:13 L=56 S=0x00 I=3405 F=0x > T=255 (#4) For ICMP protocol packets, the number following the source address should be the IC

RE: Need help analyzing firewall log message

2000-09-14 Thread Christian Pernegger
> -Original Message- > From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] Behalf Of > Mathew Johnston > Sent: Thursday, September 14, 2000 9:47 PM > To: Christian Pernegger > Subject: Re: Need help analyzing firewall log message I thank you for trying to help, but ... &

RE: Need help analyzing firewall log message

2000-09-14 Thread Mathew Johnston
MP? > > Regards > > Christian > > > -Original Message- > > From: Marcelo Couto [mailto:[EMAIL PROTECTED] > > Sent: Thursday, September 14, 2000 8:27 PM > > To: Christian Pernegger; Debian security list; Debian user list > > Subject: RE: Need he

RE: Need help analyzing firewall log message

2000-09-14 Thread Christian Pernegger
they want with a timestamp? And why over ICMP? Regards Christian > -Original Message- > From: Marcelo Couto [mailto:[EMAIL PROTECTED] > Sent: Thursday, September 14, 2000 8:27 PM > To: Christian Pernegger; Debian security list; Debian user list > Subject: RE: Ne

RE: Need help analyzing firewall log message

2000-09-14 Thread Christian Pernegger
> -Original Message- > From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]]On Behalf Of > Mathew Johnston > Sent: Thursday, September 14, 2000 9:47 PM > To: Christian Pernegger > Subject: Re: Need help analyzing firewall log message I thank you for trying to help, but ..

RE: Need help analyzing firewall log message

2000-09-14 Thread Marcelo Couto
ian security list; Debian user list Subject: Need help analyzing firewall log message Importance: Low Sep 14 19:41:44 jesus kernel: Packet log: \ input DENY eth1 PROTO=1 10.34.15.1:3 x.x.x.x:13 L=56 S=0x00 I=3405 F=0x T=255 (#4) Happens in bursts of ~7, once a day, maybe more eth1 is the exter

Need help analyzing firewall log message

2000-09-14 Thread Christian Pernegger
Sep 14 19:41:44 jesus kernel: Packet log: \ input DENY eth1 PROTO=1 10.34.15.1:3 x.x.x.x:13 L=56 S=0x00 I=3405 F=0x T=255 (#4) Happens in bursts of ~7, once a day, maybe more eth1 is the external interface, connected to a cable modem that is fully transparent. (That is I block all incoming/ou

RE: Need help analyzing firewall log message

2000-09-14 Thread Mathew Johnston
MP? > > Regards > > Christian > > > -Original Message- > > From: Marcelo Couto [mailto:[EMAIL PROTECTED]] > > Sent: Thursday, September 14, 2000 8:27 PM > > To: Christian Pernegger; Debian security list; Debian user list > > Subject: RE: Need he

RE: Need help analyzing firewall log message

2000-09-14 Thread Christian Pernegger
n earth would they want with a timestamp? And why over ICMP? Regards Christian > -Original Message- > From: Marcelo Couto [mailto:[EMAIL PROTECTED]] > Sent: Thursday, September 14, 2000 8:27 PM > To: Christian Pernegger; Debian security list; Debian user list > Subject: RE: Ne

RE: Need help analyzing firewall log message

2000-09-14 Thread Marcelo Couto
ian security list; Debian user list Subject: Need help analyzing firewall log message Importance: Low Sep 14 19:41:44 jesus kernel: Packet log: \ input DENY eth1 PROTO=1 10.34.15.1:3 x.x.x.x:13 L=56 S=0x00 I=3405 F=0x T=255 (#4) Happens in bursts of ~7, once a day, maybe more eth1 is the exter

Need help analyzing firewall log message

2000-09-14 Thread Christian Pernegger
Sep 14 19:41:44 jesus kernel: Packet log: \ input DENY eth1 PROTO=1 10.34.15.1:3 x.x.x.x:13 L=56 S=0x00 I=3405 F=0x T=255 (#4) Happens in bursts of ~7, once a day, maybe more eth1 is the external interface, connected to a cable modem that is fully transparent. (That is I block all incoming/o