Re: IPCOP newbie

From: Bit Twister (BitTwister@localhost.localdomain)
Date: 02/10/03


From: Bit Twister <BitTwister@localhost.localdomain>
Date: Mon, 10 Feb 2003 01:03:24 GMT

On Sun, 9 Feb 2003 18:56:33 -0600, Darren wrote:
> Can somebody explain to me the difference in the firewall log files of the
> source port and destination port. Is it safe to say the destinination port
> is the port it is triing to penetrate, but I do not understand why there is
> various source ports?

If I was to scann your pc, the source port would be the port I use
to scan your pc with. The destination port is the port I chose
to try on your boex. My source port would depend on my hardware/software setup.

> Sorry for the newbie question.
> Also what is the difference between the intrusion detection system logs and
> the firewall logs??

Depending on how your set them up, the firewall logs all hits on your
box. IDS could log hits which it thinks are intrusion attempts.



Relevant Pages

  • RE: L2TP + NAT-T
    ... "I'm using L2TP/IPSec since PPTP does not work through NAT. ... > Destination Port 0 ... > IKE Source Port 500 ... > IKE Destination Port 6159 ...
    (microsoft.public.win2000.ras_routing)
  • Re: IPCOP newbie
    ... >> source port and destination port. ... The destination port is the port I chose ... > Depending on how your set them up, the firewall logs all hits on your ...
    (comp.security.firewalls)
  • Configure iptables to not log certain hits
    ... Create a script that would parse my firewall logs for IP ... Doing this would certainly stop their ping attempts, ... to port 1026 or 1027. ... iptables command could result in scp connections not being logged. ...
    (comp.os.linux.security)
  • Re: SMTP and tcp ports
    ... for both the source port and for the destination port to our exchange ... random destination ports allocated by PAT on the edge router; ...
    (comp.dcom.sys.cisco)
  • SUMMARY: remote printing
    ... lp system we should only need port 515 open through the firewall. ... still not working is to look at the firewall logs while tyring to send print ... Roger Kynaston ... Information Technology Services ...
    (SunManagers)

Loading