hello there,
i think the copied line is incomplete
it´sn line from ipchains
normaly
Packet log: input DENY eth0 PROTO=17 0.0.0.0:68 255.255.255.255:67 L=328
S=0x00 I=0 F=0x0000 T=128 (#39)
the same a second one but now splitted
Packet log:
only which process is crying
input
what chain
DENY
what is happend
eth0
which interface
PROTO=17
which protocol (you can read it into /etc/protocols )
0.0.0.0:68
which source ip : port
255.255.255.255:67
which destination : port
L=328 S=0x00 I=0 F=0x0000 T=128 (#39)
normaly i think not importand
----- Original Message -----
From: "Philipp Snizek"
Hi all
Please can somebody tell me what exacly this log entry below means?
proto1 146.188.12.50:11 212.232.xyz.abc:0 L=56 S=0xC0 I=399 F=0x0000 T=232
Why does somebody want to systat me? /etc/services doesn't say anything about icmp and systat. Is this something to worry about? I have maybe 20 such entries during the last 20 Minutes.
Thank you... Philipp
--------------------------------------------------------------------- To unsubscribe, e-mail: suse-security-unsubscribe@suse.com For additional commands, e-mail: suse-security-help@suse.com
participants (1)
-
RENE