Skip site navigation (1)Skip section navigation (2)
Date:      Wed, 13 Apr 2005 15:00:14 -0600
From:      Ed Stover <estover@nativenerds.com>
To:        bob@a1poweruser.com
Cc:        freebsd-questions@freebsd.org
Subject:   RE: How to interpret ipfw log?
Message-ID:  <1113426014.91701.18.camel@red.nativenerds.com>
In-Reply-To: <MIEPLLIBMLEEABPDBIEGKEBDHEAA.bob@a1poweruser.com>
References:  <MIEPLLIBMLEEABPDBIEGKEBDHEAA.bob@a1poweruser.com>

next in thread | previous in thread | raw e-mail | index | archive | help
On Tue, 2005-04-12 at 23:28 -0400, bob@a1poweruser.com wrote:
> Your ipfw rule 2500 is denying those outbound packets
> 192.168.0.200:65117  is your ip address: port number
> 65.87.165.45:5800 is the remote target ip address and port number
> and this is leaving your pc on NIC  named tx0
> 
> 
> 
> 
> -----Original Message-----
> From: owner-freebsd-questions@freebsd.org
> [mailto:owner-freebsd-questions@freebsd.org]On Behalf Of Sergei
> Gnezdov
> Sent: Tuesday, April 12, 2005 11:08 PM
> To: freebsd-questions@freebsd.org
> Subject: How to interpret ipfw log?
> 
> The following firewall log seems to make very little sense to me.
> What could it possibly mean?
> 
> Apr 11 04:27:05 name kernel: ipfw: 2500 Deny TCP 192.168.0.200:65117
> 65.87.165.45:5800 out via tx0
> Apr 11 04:27:05 name kernel: ipfw: 2500 Deny TCP 192.168.0.200:49761
> 65.87.165.45:1003 out via tx0
> Apr 11 04:27:05 name kernel: ipfw: 2500 Deny TCP 192.168.0.200:50116
> 65.87.165.45:1362 out via tx0
> Apr 11 04:27:05 name kernel: ipfw: 2500 Deny TCP 192.168.0.200:50055
> 65.87.165.45:6101 out via tx0
> Apr 11 04:27:05 name kernel: ipfw: 2500 Deny TCP 192.168.0.200:62352
> 65.87.165.45:888 out via tx0
> Apr 11 04:27:05 name kernel: ipfw: 2500 Deny TCP 192.168.0.200:61272
> 65.87.165.45:969 out via tx0
> Apr 11 04:27:05 name kernel: ipfw: 2500 Deny TCP 192.168.0.200:58267
> 65.87.165.45:471 out via tx0
> Apr 11 04:27:05 name kernel: ipfw: 2500 Deny TCP 192.168.0.200:54164
> 65.87.165.45:1496 out via tx0
> Apr 11 04:27:05 name kernel: ipfw: 2500 Deny TCP 192.168.0.200:61306
> 65.87.165.45:5716 out via tx0
> Apr 11 04:27:05 name kernel: ipfw: 2500 Deny TCP 192.168.0.200:64970
> 65.87.165.45:281 out via tx0
> Apr 11 04:27:05 name kernel: ipfw: 2500 Deny TCP 192.168.0.200:64115
> 65.87.165.45:106 out via tx0
> Apr 11 04:27:05 name kernel: ipfw: 2500 Deny TCP 192.168.0.200:62007
> 65.87.165.45:284 out via tx0
> 
> _______________________________________________
> freebsd-questions@freebsd.org mailing list
> http://lists.freebsd.org/mailman/listinfo/freebsd-questions
> To unsubscribe, send any mail to
> "freebsd-questions-unsubscribe@freebsd.org"
> 
> _______________________________________________
> freebsd-questions@freebsd.org mailing list
> http://lists.freebsd.org/mailman/listinfo/freebsd-questions
> To unsubscribe, send any mail to "freebsd-questions-unsubscribe@freebsd.org"
looks like nmap ;)



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?1113426014.91701.18.camel>