From mboxrd@z Thu Jan 1 00:00:00 1970 From: "Star Fire" Subject: iptables Date: Wed, 23 Apr 2003 17:17:58 +1200 Sender: netfilter-admin@lists.netfilter.org Message-ID: Mime-Version: 1.0 Return-path: Errors-To: netfilter-admin@lists.netfilter.org List-Help: List-Post: List-Subscribe: , List-Id: List-Unsubscribe: , List-Archive: Content-Type: text/plain; format=flowed; charset="us-ascii" Content-Transfer-Encoding: 7bit To: netfilter@lists.netfilter.org dear group, I'm quite new to iptables and using 1.2.6a. We have a linux box opend to the net and behind that is a ISA server doing the proxying for the users. We have implemented incident reporting on it and continuously getting alerts that there are port scan attempts to the internal ISA server. I have enabled established and related traffic through my firewal. Can you please tell me how this happens. Question number 2 is..can someone put my linux server external ip address as a gteway address and do a portscan to our internal ISA server which has a 192.168 range IP. If so how can i stop this through IPTABLES?. Thanks for your time. _________________________________________________________________ Protect your PC - get McAfee.com VirusScan Online http://clinic.mcafee.com/clinic/ibuy/campaign.asp?cid=3963