Re: Need help analyzing firewall log message

2000-09-19 Thread Robert Mognet
Hello, On Thu, Sep 14, 2000 at 07:59:08PM +0200, Christian Pernegger wrote: Sep 14 19:41:44 jesus kernel: Packet log: \ input DENY eth1 PROTO=1 10.34.15.1:3 x.x.x.x:13 L=56 S=0x00 I=3405 F=0x T=255 (#4) For ICMP protocol packets, the number following the source address should be the ICMP

Re: Need help analyzing firewall log message

2000-09-19 Thread Robert Mognet
Hello, On Thu, Sep 14, 2000 at 07:59:08PM +0200, Christian Pernegger wrote: Sep 14 19:41:44 jesus kernel: Packet log: \ input DENY eth1 PROTO=1 10.34.15.1:3 x.x.x.x:13 L=56 S=0x00 I=3405 F=0x T=255 (#4) For ICMP protocol packets, the number following the source address should be the ICMP

RE: Need help analyzing firewall log message

2000-09-14 Thread Mathew Johnston
L PROTECTED]] Sent: Thursday, September 14, 2000 8:27 PM To: Christian Pernegger; Debian security list; Debian user list Subject: RE: Need help analyzing firewall log message From /usr/src/linux/include/linux/icmp.h: snip -Original Message- From: Christian Pernegger [mai

RE: Need help analyzing firewall log message

2000-09-14 Thread Marcelo Couto
security list; Debian user list Subject: Need help analyzing firewall log message Importance: Low Sep 14 19:41:44 jesus kernel: Packet log: \ input DENY eth1 PROTO=1 10.34.15.1:3 x.x.x.x:13 L=56 S=0x00 I=3405 F=0x T=255 (#4) Happens in bursts of ~7, once a day, maybe more eth1 is the external

Need help analyzing firewall log message

2000-09-14 Thread Christian Pernegger
Sep 14 19:41:44 jesus kernel: Packet log: \ input DENY eth1 PROTO=1 10.34.15.1:3 x.x.x.x:13 L=56 S=0x00 I=3405 F=0x T=255 (#4) Happens in bursts of ~7, once a day, maybe more eth1 is the external interface, connected to a cable modem that is fully transparent. (That is I block all

RE: Need help analyzing firewall log message

2000-09-14 Thread Marcelo Couto
list; Debian user list Subject: Need help analyzing firewall log message Importance: Low Sep 14 19:41:44 jesus kernel: Packet log: \ input DENY eth1 PROTO=1 10.34.15.1:3 x.x.x.x:13 L=56 S=0x00 I=3405 F=0x T=255 (#4) Happens in bursts of ~7, once a day, maybe more eth1 is the external

RE: Need help analyzing firewall log message

2000-09-14 Thread Christian Pernegger
over ICMP? Regards Christian -Original Message- From: Marcelo Couto [mailto:[EMAIL PROTECTED] Sent: Thursday, September 14, 2000 8:27 PM To: Christian Pernegger; Debian security list; Debian user list Subject: RE: Need help analyzing firewall log message From /usr/src/linux