Bryan,

I just turned Shorewall on after modifying the /etc/X11/interfaces and a
shorewall restart from a root console.

On Wed, 2004-03-03 at 07:57, Bryan Phinney wrote:
> Okay, just general information.  Has anyone else on the list recently started 
> noticing a lot of martian source packets being logged from the kernel?  If 
> so, I can probably help you to track down what is causing the entries and 
> also help you remove them.

I get the kernel martian messages but they seem to be eminating from my
ISP or another source. I'll post the messages below:

kernel          martian source 151.201.29.xxx from 151.201.29.1 on dev eth0
kernel          ll header:ff:ff:ff:ff:ff:ff:00:08:e3:b9:45:08:06  **Could this
be my MAC address
kernel          Shorewall:net2all:DROP:IN=ppp0 OUT=MAC= SRC=68.161.232.35
DST=68.161.232.35 DST=68.162.128.17 LEN=92 TOS=0x00 PREC=0x00 TTL=118
ID=64127 PROTO=ICMP TYPE=8 CODE=0 ID=512 SEQ=40632
kernel          Shorewall:OUTPUT:REJECT:IN= OUT=eth0 SRC=10.0.0.10
DST=10.0.0.255 LEN=166 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=UDP
SPT=631 LEN=146

10.0.0.10 is designated in my hosts file as my machine name.

I'm green when it comes to this security stuff. What is the 'quick' way
to stop these messages and I'll look at the shorewall site unless you
know of a better source on learning how to set this up better.

Thanks,

Terry

-- 
I used to have a signature, but I lost it.  My new one is:

IIRC CRS


Want to buy your Pack or Services from MandrakeSoft? 
Go to http://www.mandrakestore.com

Reply via email to