Re: [leaf-user] Lots of port probes.

2005-12-14 Thread Tom Eastep
On Wednesday 14 December 2005 11:19, Jim Ford wrote: > > Hmm - it doesn't work for me! > > I put: > 0.0.0.0/0udp1025:1032 > in /etc/shorewall/blacklist > and: > BLACKLIST_LOGLEVEL="" > in /etc/shorewall/shorewall.conf > > and am still getting udp packets targeting 1025 to 1032. Di

Re: [leaf-user] Lots of port probes.

2005-12-14 Thread Jim Ford
To cut down on the amount of clutter appearing in my firewall log, I silently blacklist certain traffic. In shorewall.conf, I set BLACKLIST_LOGLEVEL="". Then in /etc/shorewall/blacklist, I have the equivalent of: 0.0.0.0/0 tcp 57 0.0.0.0/0 tcp