Hola: Me he conectado a ftp.it.debian.org para bajarme un paquete .deb y me veo esto en /var/log/daemon.log (tengo siempre una ventana monitorizándolo, paranoico que es uno):
Nov 15 22:24:43 beta tcplogd: port 3652 connection attempt from [EMAIL PROTECTED] [130.251.XX.XXX] Nov 15 22:24:47 beta tcplogd: port 3717 connection attempt from ... Nov 15 22:24:48 beta tcplogd: port 3591 connection attempt from ... Nov 15 22:24:56 beta tcplogd: port 3782 connection attempt from ... Nov 15 22:25:02 beta tcplogd: port 3843 connection attempt from ... Nov 15 22:25:11 beta tcplogd: port 3843 connection attempt from ... Nov 15 22:25:12 beta tcplogd: port 3909 connection attempt from ... Nov 15 22:25:15 beta tcplogd: port 3909 connection attempt from ... Nov 15 22:25:24 beta tcplogd: port 4095 connection attempt from ... Nov 15 22:25:34 beta tcplogd: port 4098 connection attempt from ... Nov 15 22:25:34 beta tcplogd: port 4100 connection attempt from ... Nov 15 22:25:37 beta tcplogd: port 4100 connection attempt from ... Nov 15 22:26:22 beta tcplogd: port 4104 connection attempt from ... Nov 15 22:26:38 beta tcplogd: port 4106 connection attempt from ... Nov 15 22:26:44 beta tcplogd: port 4106 connection attempt from ... Nov 15 22:27:19 beta tcplogd: port 4114 connection attempt from ... Nov 15 22:27:21 beta tcplogd: port 4109 connection attempt from ... Nov 15 22:27:21 beta tcplogd: port 4116 connection attempt from ... Nov 15 22:27:37 beta tcplogd: port 4121 connection attempt from ... Nov 15 22:27:40 beta tcplogd: port 4123 connection attempt from ... Nov 15 22:30:13 beta tcplogd: port 4126 connection attempt from ... Nov 15 22:30:17 beta tcplogd: port 4128 connection attempt from ... Nov 15 22:30:26 beta tcplogd: port 4130 connection attempt from ... ¿Este escaneado de puertos es normal? ¿Forma parte de la política de seguridad del servidor ftp? Saludos. -- [EMAIL PROTECTED] ------------------------------------------- This message was sent by Mutt under Linux -------------------------------------------