[oclug]portscans and firewalls

Martin Hicks mort at bork.org
Fri Oct 25 10:14:12 EDT 2002


On Fri, Oct 25, 2002 at 02:19:22AM -0400, gabriel wrote:
> i like to think i know my way around a lot of linux stuff, but at present i'm 
> still a total newbie at iptables and firewalling, but isn't the following 
> supposed to drop all connection attemps to my box?

It is dropping all the connections to your box, but your LOG rule is telling 
netfilter to log all that gets dropped.  

Anything that makes it through your INPUT and OUTPUT rules will hit your one LOG 
rule and be logged.

mh


-- 
Martin Hicks  ||  mort at bork.org  || PGP/GnuPG: 0x4C7F2BEE
plato up 23 days, 16:11, 15 users,  load average: 0.07, 0.02, 0.00
Beer: So much more than just a breakfast drink.
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 189 bytes
Desc: not available
Url : http://tux.oclug.on.ca/pipermail/oclug/attachments/20021025/ac562f39/attachment.bin


More information about the OCLUG mailing list