All of lore.kernel.org
 help / color / mirror / Atom feed
* RE: I don´t want anyone can scan my server 
  2003-05-19 21:03 ` I don´t want anyone can scan my server juanca
@ 2003-05-19 18:36   ` Patrick Ahler
  2003-05-19 22:15     ` Bob Keyes
  2003-05-19 19:31   ` Al-Juhani
  2003-05-19 22:49   ` John Mathey
  2 siblings, 1 reply; 5+ messages in thread
From: Patrick Ahler @ 2003-05-19 18:36 UTC (permalink / raw)
  To: netfilter EMAIL, juanca

drop all ICMP Packets... that'll be a good start.

-----Original Message-----
From: netfilter-admin@lists.netfilter.org
[mailto:netfilter-admin@lists.netfilter.org]On Behalf Of juanca
Sent: Monday, May 19, 2003 5:03 PM
To: netfilter@lists.netfilter.org
Subject: I don´t want anyone can scan my server


What rulset should implement?
I don´t want anyone can scan my server?
I need that all requests been rejected

Thanks in advance






^ permalink raw reply	[flat|nested] 5+ messages in thread

* Re: I don´t want anyone can scan my server 
  2003-05-19 21:03 ` I don´t want anyone can scan my server juanca
  2003-05-19 18:36   ` Patrick Ahler
@ 2003-05-19 19:31   ` Al-Juhani
  2003-05-19 22:49   ` John Mathey
  2 siblings, 0 replies; 5+ messages in thread
From: Al-Juhani @ 2003-05-19 19:31 UTC (permalink / raw)
  To: juanca; +Cc: netfilter

Hello,

Use PortSentry, read this URL:
http://www.linuxworld.com/site-stories/2001/1002.portsentry.html for more
info.
Then you can configure it to trigger a deny rule to the offending IP once
PortScan or PortProbes are detected.

Check the links below for Install and configs:

http://linux.rice.edu/help/tips-sentry.html

http://www.tldp.org/LDP/solrhe/Securing-Optimizing-Linux-RH-Edition-v1.3/cha
p14sec116.html

PortSentry is not available at psionic.com. For latest tarballs check this
site: http://net-recon.dnsalias.com/software/trisentry/

Regards.
aljuhani@zajil.net

----- Original Message -----
From: "juanca" <juanca@sat.com.py>
To: <netfilter@lists.netfilter.org>
Sent: Tuesday, May 20, 2003 00:03
Subject: I don´t want anyone can scan my server


> What rulset should implement?
> I don´t want anyone can scan my server?
> I need that all requests been rejected
>
> Thanks in advance
>
>
>
>



^ permalink raw reply	[flat|nested] 5+ messages in thread

* I don´t want anyone can scan my server 
       [not found] <20030430210501.9656.40740.Mailman@kashyyyk>
@ 2003-05-19 21:03 ` juanca
  2003-05-19 18:36   ` Patrick Ahler
                     ` (2 more replies)
  0 siblings, 3 replies; 5+ messages in thread
From: juanca @ 2003-05-19 21:03 UTC (permalink / raw)
  To: netfilter

What rulset should implement?
I don´t want anyone can scan my server?
I need that all requests been rejected

Thanks in advance



^ permalink raw reply	[flat|nested] 5+ messages in thread

* RE: I don´t want anyone can scan my server 
  2003-05-19 18:36   ` Patrick Ahler
@ 2003-05-19 22:15     ` Bob Keyes
  0 siblings, 0 replies; 5+ messages in thread
From: Bob Keyes @ 2003-05-19 22:15 UTC (permalink / raw)
  To: Patrick Ahler; +Cc: netfilter EMAIL, juanca



On Mon, 19 May 2003, Patrick Ahler wrote:

> drop all ICMP Packets... that'll be a good start.

How about just unplugging your system from the Internet? That's been
proven the most effective.

-Bob



^ permalink raw reply	[flat|nested] 5+ messages in thread

* Re: I don´t want anyone can scan my server 
  2003-05-19 21:03 ` I don´t want anyone can scan my server juanca
  2003-05-19 18:36   ` Patrick Ahler
  2003-05-19 19:31   ` Al-Juhani
@ 2003-05-19 22:49   ` John Mathey
  2 siblings, 0 replies; 5+ messages in thread
From: John Mathey @ 2003-05-19 22:49 UTC (permalink / raw)
  To: juanca, netfilter

What do you mean by scan, do you mean ping, attempt telnet, , can you be 
more specific.

John



At 02:03 PM 5/19/2003 -0700, juanca wrote:
>What rulset should implement?
>I don´t want anyone can scan my server?
>I need that all requests been rejected
>
>Thanks in advance



^ permalink raw reply	[flat|nested] 5+ messages in thread

end of thread, other threads:[~2003-05-19 22:49 UTC | newest]

Thread overview: 5+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
     [not found] <20030430210501.9656.40740.Mailman@kashyyyk>
2003-05-19 21:03 ` I don´t want anyone can scan my server juanca
2003-05-19 18:36   ` Patrick Ahler
2003-05-19 22:15     ` Bob Keyes
2003-05-19 19:31   ` Al-Juhani
2003-05-19 22:49   ` John Mathey

This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.