From mboxrd@z Thu Jan 1 00:00:00 1970 From: "Al-Juhani" Subject: =?iso-8859-1?Q?Re:_I_don=B4t_want_anyone_can_scan_my_server_?= Date: Mon, 19 May 2003 22:31:40 +0300 Sender: netfilter-admin@lists.netfilter.org Message-ID: <000a01c31e3d$46964f40$99242ed4@outbound> References: <20030430210501.9656.40740.Mailman@kashyyyk> <007901c31e4a$158cfb80$0f00a8c0@juancarlitos> Reply-To: "Al-Juhani" Mime-Version: 1.0 Content-Transfer-Encoding: quoted-printable Return-path: Errors-To: netfilter-admin@lists.netfilter.org List-Help: List-Post: List-Subscribe: , List-Id: List-Unsubscribe: , List-Archive: Content-Type: text/plain; charset="iso-8859-1" To: juanca Cc: netfilter@lists.netfilter.org Hello, Use PortSentry, read this URL: http://www.linuxworld.com/site-stories/2001/1002.portsentry.html for more info. Then you can configure it to trigger a deny rule to the offending IP once PortScan or PortProbes are detected. Check the links below for Install and configs: http://linux.rice.edu/help/tips-sentry.html http://www.tldp.org/LDP/solrhe/Securing-Optimizing-Linux-RH-Edition-v1.3/cha p14sec116.html PortSentry is not available at psionic.com. For latest tarballs check this site: http://net-recon.dnsalias.com/software/trisentry/ Regards. aljuhani@zajil.net ----- Original Message ----- From: "juanca" To: Sent: Tuesday, May 20, 2003 00:03 Subject: I don=B4t want anyone can scan my server > What rulset should implement? > I don=B4t want anyone can scan my server? > I need that all requests been rejected > > Thanks in advance > > > >