Skip site navigation (1)Skip section navigation (2)
Date:      18 Aug 1998 10:00:54 +0200
From:      dag-erli@ifi.uio.no (Dag-Erling Coidan =?iso-8859-1?Q?Sm=F8rgrav?= )
To:        Palle Girgensohn <girgen@partitur.se>
Cc:        freebsd-security@FreeBSD.ORG
Subject:   Re: private network on router's external NIC?
Message-ID:  <xzp3eauu3bd.fsf@hrotti.ifi.uio.no>
In-Reply-To: Palle Girgensohn's message of "Tue, 18 Aug 1998 00:00:08 %2B0200"
References:  <35D8A7E8.2DC50695@partitur.se>

next in thread | previous in thread | raw e-mail | index | archive | help
Palle Girgensohn <girgen@partitur.se> writes:
> Every once in a while, packages from 192.168.x.y on the external
> interface are logged and deferred. They are mostly trying to reach the
> http port of one of our web servers (inside), but also sometimes port
> 137-139 (netbios-*) and a few others.  Are they really attempted
> break-ins?

Forged packets to the NetBIOS ports are with 99% certainty attempted
DoS attacks (which will only succeed against Winblows boxen)

DES
-- 
Dag-Erling Smørgrav - dag-erli@ifi.uio.no

To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe security" in the body of the message



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?xzp3eauu3bd.fsf>