Got an email from a friend that is running a SonicWall XPRS ( with the DMZ Port) and 
has 2 servers attached to it..... 
W2K  (web services)  and RH, 7.1 (email services - sendmail but not sure of version)


He got worried about what he was getting in his log.

What he is getting is that the RH server is doing a lot of connections that are 
getting blocked at the Wan Port of the 
sonicwall.

ie.    165 is the RH server and 162 is the address of the wan port that will then 
connect to the cisco router via a cross 
over cable.


x.x.x.165, 38xxx, DMZ    x.x.x.162,113, WAN

What is interesting is that each attempt is 10 minutes away from the last 
and the port number is higher than the last, but not numerically consecutive
 ( more like   38691, 38692, 38695,  38702,  38704)
etc  


Ideas?  I have not had my hands on the machine yet, but Have not seen this behavior in 
his logs before.

thanks for any insight.

steve

[EMAIL PROTECTED]

_________________________________________________________
Do You Yahoo!?
Get your free @yahoo.com address at http://mail.yahoo.com

Reply via email to