On Mon, 21 Jun 2004 23:13:38 +0800, Thomas Beresford wrote: > The thing is, whenever I connect to the internet, I receive a lot, but > really lots of attempts to access on port 445, microsoft-ds and some > port 135, loc-srv. Is it normal?
Absolutely. These requests are from misconfigured Windows systems or from various Microsoft worms and trojans. > whenever I run nmap here, there's some ports that are opened > and I'm really worried about their security (these ports are 111 sunrpc > and 515 printer). Is there a way to close these ports? I've tried > blocking them with firestarter but did't work. Are you running nmap on the same system as the RPC and printer services? Is iptables set up to block these ports from 127.0.0.1? -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]