Skip site navigation (1)Skip section navigation (2)
Date:      Mon, 30 Jul 2001 18:43:06 +0300
From:      Yonatan Bokovza <Yonatan@xpert.com>
To:        'Hans Zaunere' <zaunere@yahoo.com>, questions@freebsd.org
Subject:   RE: Spoof attack?
Message-ID:  <EB513E68D3F5D41191CA00025558810150D594@mailserv.xpert.com>

next in thread | raw e-mail | index | archive | help
Hi,

> I have tcp and udp log_in_vain options enabled in my
> kernel.  I have noticed a couple odd connection
> attempts:
> 
> Connection attempt to UDP 127.0.0.1:512 from
> 127.0.0.1:1131

sendmail tries to access a local service called "comsat",
on port 512/udp.
A workaround is to comment this line in /etc/services:
biff	512/udp	comsat
There is probably something you can configure in
sendmail to fix this.
Kudos for your paranoia. Keep that up.

Best Regards, 

Yonatan Bokovza
IT Security Consultant
Xpert Systems

To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-questions" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?EB513E68D3F5D41191CA00025558810150D594>