Skip site navigation (1)Skip section navigation (2)
Date:      Mon, 24 Feb 2003 21:23:56 -0500
From:      Alexander Anderson <alex@upful.org>
To:        freebsd-security@FreeBSD.ORG
Subject:   Re: FireDNS and net.inet.udp.log_in_vain
Message-ID:  <20030225022356.GA77462@dusty.upful.org>
In-Reply-To: <20030223193605.GD3812@gothmog.gr>
References:  <873cmmpc16.wl@bemidji.meridian-enviro.com> <1045544795.19726.3.camel@sambo.fud.org.nz> <20030222171054.GA97944@dusty.upful.org> <20030223193605.GD3812@gothmog.gr>

next in thread | previous in thread | raw e-mail | index | archive | help
> > > >   Connection attempt to UDP <our-ip>:<port-above-1024> from
> > > >   <ip-addr-in-resolv.conf>:53
> 
> You must have enabled log_in_vain in your rc.conf, right?

Yes, right.

And I want to have it enabled because I do want to log all connection
attempts to ports that have no listening socket on them. The only exception
is when my ISP's name servers are slow or overloaded, and when they reply,
the local port is already closed, then I don't want to log their replies in
vain.

To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-security" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20030225022356.GA77462>