Mailinglist Archive: opensuse-security (757 mails)

< Previous Next >
SuSEFirewall logs port 8 remote to port 0 local?
  • From: Nick Webb <nickw@xxxxxxxxxx>
  • Date: Sun, 13 Jan 2002 23:00:45 -0800
  • Message-id: <20020113230045.A13584@xxxxxxxxxxxxxxxx>
Hi,

Just a stupid, quick question. I checked my firewall logs from the past few days, and all accepted traffic was familiar to me, accept for two IPs. The log says it came from port 8 on the remote machine to port 0 on mine, what kind of traffic is this? Anything to worry about?

====
Jan 12 00:50:44 gizmo kernel: Packet log: input ACCEPT eth0 PROTO=1 xx.xx.xx.xx:8 xx.xx.xx.xx:0 L=64 S=0x00 I=39662 F=0x0000 T=111 (#8)
Jan 12 00:50:44 gizmo kernel: Packet log: input ACCEPT eth0 PROTO=1 xx.xx.xx.xx:8 xx.xx.xx.xx:0 L=64 S=0x00 I=39663 F=0x0000 T=111 (#9)

Jan 13 22:05:34 gizmo kernel: Packet log: input ACCEPT eth0 PROTO=1 xx.xx.xx.xx:8 xx.xx.xx.xx:0 L=64 S=0x00 I=30563 F=0x0000 T=113 (#8)
Jan 13 22:05:34 gizmo kernel: Packet log: input ACCEPT eth0 PROTO=1 xx.xx.xx.xx:8 xx.xx.xx.xx:0 L=64 S=0x00 I=30819 F=0x0000 T=114 (#9)i
====

Thanks for your help.

--
Nick Webb
http://www.uidaho.edu/~nickw/

< Previous Next >
This Thread
Follow Ups