Skip site navigation (1)Skip section navigation (2)
Date:      Sun, 30 Sep 2007 09:41:00 -0700
From:      "Kurt Buff" <kurt.buff@gmail.com>
To:        "Chuck Swiger" <cswiger@mac.com>
Cc:        freebsd-questions@freebsd.org
Subject:   Re: Security report question
Message-ID:  <a9f4a3860709300940pb16780q9803499c8fbc2c6@mail.gmail.com>
In-Reply-To: <46FF4CF2.3070109@mac.com>
References:  <a9f4a3860709290843r23dab009na6ffe791b7c2a72b@mail.gmail.com> <46FF4CF2.3070109@mac.com>

next in thread | previous in thread | raw e-mail | index | archive | help
On 9/30/07, Chuck Swiger <cswiger@mac.com> wrote:
> Kurt Buff wrote:
> [ ... ]
> > +Limiting closed port RST response from 283 to 200 packets/sec
> >
> > I don't know what this means, though I suspect it could mean that I'm
> > being port scanned. Is this a reasonable guess?
>
> Yes.  It could also be something beating really hard on a single closed port, too.
>
> --
> -Chuck

Thanks. This, coupled with some invalid SSH login attempts from a
known user, has made me quite suspicious. I think, though, that this
is all that I can call it at this point - suspcious.

Anything further I could turn up to monitor/log what's going on?



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?a9f4a3860709300940pb16780q9803499c8fbc2c6>