I don't get any "normal" UDP scans against my box from my ISP or anyone
else and it sits right on the net. What normal activity involves UDP or
TCP scans? I personally my be paranoid but I treat all scans as a hack
attempt because this is the first step in more serious activity.
Turning off UDP in portsentry is IMHO asking for possible problems. I
don't report scans to the offending ISP but portsenty drops the IP into
the deny rules in IPCHAINS. I want to know who is sniffing my box in
case a break in occurs. Knowledge is power, ignorance is death.
----- Original Message -----
From: <[EMAIL PROTECTED]>
To: <[EMAIL PROTECTED]>
Cc: <[EMAIL PROTECTED]>
Sent: Friday, November 05, 1999 1:04 PM
Subject: Re: ISP says "Don't Worry"
>
> udp scans are common. start portsentry only in tcp mode (and use stcp
not atcp).
> port 161 is scanned all the time w/o malicious intent.
>
> Mate
>
>
> --
> To unsubscribe: mail [EMAIL PROTECTED] with "unsubscribe"
> as the Subject.
>
--
To unsubscribe: mail [EMAIL PROTECTED] with "unsubscribe"
as the Subject.