[Date Prev][Date Next]   [Thread Prev][Thread Next]   [Thread Index] [Date Index] [Author Index]

Ident service and shutting it down



Hi

I have been working on a significantly more detailed firewall (iptables)
that I have been working on. This includes the logging of all packets
that are dropped.

I am seeing log entries like

Dec  3 08:56:04 archenland kernel: IPTABLES TCP-OUT: IN= OUT=ppp0
   SRC=139.130.246.51 DST=203.15.51.6 LEN=60 TOS=0x00 PREC=0x00 TTL=64
   ID=2 PROTO=TCP SPT=1411 DPT=113 WINDOW=5840 RES=0x00 SYN URGP=0 

Now - this is headed outbound on towards a remote authentication service
(port 113). I can see that this is occurring as a result of inbound
mail, but cannot see how sendmail triggers this so I can turn it off.

Sendmail obviously doesn't really care about this as mail is still going
through, despite the traffic being blocked.

Anyone?

-- 
Robert Hart					 hartr interweft com au
Strategic IT & open source consulting                +61 (0)438 385 533
Brisbane, Australia			    http://www.interweft.com.au





[Date Prev][Date Next]   [Thread Prev][Thread Next]   [Thread Index] [Date Index] [Author Index]