Skip site navigation (1)Skip section navigation (2)
Date:      Tue, 11 Dec 2001 10:54:32 -0600
From:      "Darryl Hoar" <darryl@osborne-ind.com>
To:        <freebsd-questions@freebsd.org>
Subject:   Firewall_logs
Message-ID:  <001201c18264$8257b0d0$0701a8c0@darryl>

next in thread | raw e-mail | index | archive | help
Greetings,
I was needing some help to decode the following:

Dec 11 00:19:38 darryl ipmon[95]: 00:19:36.910691 xl0 @0:2 b 
jgirls.net[66.40.23.76],http -> 192.168.1.209,4882 PR tcp len 20 
1492 -A 2216807764 128781 8312 IN

Log entry at 12:19:38 am on machine Darryl by ipmon process (PID 95).
It came IN on interface xl0.  It was from jgirls.net The ip address
is 66.40.23.76.  It was an http request that came from my internal
machine 209.  After that, I'm lost.

Talked with user of machine 209 and he swears on a stack of bibles 
he wasn't here at 12:19am.  I'm not sure I believe him.

thanks for any help.

-Darryl


To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-questions" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?001201c18264$8257b0d0$0701a8c0>