> -----Original Message-----
> From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]]
> Sent: 12. februar 2002 21:57
> To: [EMAIL PROTECTED]
> Subject: [FW-1] "Private" IP addresses
>
>
> I am noticing an increasing amount of nddatagrams and nbname
> requests on my firewall(s) coming from 192.168.100 to 102
> addresses and asking for teh broadcast; 192.168.100.255.
> Is anyone else getting the same?  Is there a new exploit?


You say nothing about where these packets come from.
Do they come from an internal network, or from teh internet?
Most NBName packets you will see, will probably be broadcasts in any case.
Windows-boxes searching for a domain controller, for instance, will
send these.
If they're coming from the internet, they can probably be ignored safely,
seeing
as any answers will not make it back to the original recipient (unless
they've hijacked
routers close to you).

Cheers,
Anders :)

=================================================
To set vacation, Out Of Office, or away messages,
send an email to [EMAIL PROTECTED]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
[EMAIL PROTECTED]
=================================================

Reply via email to