Mailinglist Archive: opensuse (3103 mails)

< Previous Next >
Strange firewall logs.
  • From: adm <fmdf@xxxxxxxxxx>
  • Date: Tue, 18 Feb 2003 17:15:30 +0100
  • Message-id: <200302181715.30022.fmdf@xxxxxxxxxx>
Can someone explain the following firewall trace? I run a Linux box (not in
LAN) that is connected to the Internet via PPP. Look at the IP addresses:
195.130.232.21 is not mine! Whose are they? And what kind of address is the
224.0.0.1 (reserved!)? Thank you in advance.

Feb 18 16:05:34 myhost kernel: SuSE-FW-ILLEGAL-TARGET IN=ppp0 OUT= MAC=
SRC=195.130.232.21 DST=224.0.0.1 LEN=32 TOS=0x00 PREC=0xC0 TTL=1 ID=56123 OP
(94040000) PROTO=2
Feb 18 16:06:35 myhost kernel: SuSE-FW-ILLEGAL-TARGET IN=ppp0 OUT= MAC=
SRC=195.130.232.21 DST=224.0.0.1 LEN=32 TOS=0x00 PREC=0xC0 TTL=1 ID=58787 OP
(94040000) PROTO=2
Feb 18 16:07:35 myhost kernel: SuSE-FW-ILLEGAL-TARGET IN=ppp0 OUT= MAC=
SRC=195.130.232.21 DST=224.0.0.1 LEN=32 TOS=0x00 PREC=0xC0 TTL=1 ID=61542 OP
(94040000) PROTO=2
Feb 18 16:08:35 myhost kernel: SuSE-FW-ILLEGAL-TARGET IN=ppp0 OUT= MAC=
SRC=195.130.232.21 DST=224.0.0.1 LEN=32 TOS=0x00 PREC=0xC0 TTL=1 ID=64584 OP
(94040000) PROTO=2
Feb 18 16:09:37 myhost kernel: SuSE-FW-ILLEGAL-TARGET IN=ppp0 OUT= MAC=
SRC=195.130.232.21 DST=224.0.0.1 LEN=32 TOS=0x00 PREC=0xC0 TTL=1 ID=1934 OPT
(94040000) PROTO=2
Feb 18 16:10:37 myhost kernel: SuSE-FW-ILLEGAL-TARGET IN=ppp0 OUT= MAC=
SRC=195.130.232.21 DST=224.0.0.1 LEN=32 TOS=0x00 PREC=0xC0 TTL=1 ID=4839 OPT
(94040000) PROTO=2
Feb 18 16:10:50 myhost kernel: SuSE-FW-DROP-DEFAULT IN=ppp0 OUT= MAC=
SRC=62.135.1.27 DST=62.11.78.46 LEN=78 TOS=0x00 PREC=0x00 TTL=105 ID=2133
PROTO=UDP SPT=1026 DPT=137 LEN=58
Feb 18 16:11:37 myhost kernel: SuSE-FW-ILLEGAL-TARGET IN=ppp0 OUT= MAC=
SRC=195.130.232.21 DST=224.0.0.1 LEN=32 TOS=0x00 PREC=0xC0 TTL=1 ID=7692 OPT
(94040000) PROTO=2




















< Previous Next >
This Thread
Follow Ups