Unexpected log output..

manz manz_egroups@yahoo.com
Wed, 5 Dec 2001 10:05:22 -0800 (PST)


Jim,

   Thanks for the links, however based on the logs
that I have, is it normal to have SRC=0.0.0.0 and the
DST=255.255.255.255, I don't think its normal. 
   I just want to know if my firewall is being hacked
or something. Thanks! 
   

--- Jim Fleming <jfleming@anet.com> wrote:
> This may help...
> http://www.dot-biz.com/IPv4/Tutorial/
> 
> The Netfilter Project: Packet Mangling for Linux 2.4
> http://netfilter.samba.org
> 
> Jim Fleming
> http://www.IPv8.info
> IPv16....One Better !!
> 
> 
> ----- Original Message ----- 
> From: "manz" <manz_egroups@yahoo.com>
> To: <netfilter@lists.samba.org>
> Sent: Wednesday, December 05, 2001 11:45 AM
> Subject: Unexpected log output..
> 
> 
> > Netfilter,
> >         Thanks for the list! My firewall is
> working
> > now. I have this log,
> > iptables -A INPUT -j LOG --log-prefix "IPT INPUT:
> "
> > and I have this log result. To be frank I don't
> know
> > whats the meaning of it. Hope someone could help
> me
> > out. Will I ignore this log?
> > 
> > Dec  5 11:51:06 Gateway kernel: IPT INPUT: IN=eth1
> > OUT= MAC=ff:ff:ff:ff:ff:ff:00:60:97:b8:ac:d6:08:00
> > SRC=0.0.0.0 DST=255.255.255.255 LEN=328 TOS=0x00
> > PREC=0x00 TTL=32 ID=34925 PROTO=UDP SPT=68 DPT=67
> > LEN=308 
> > Dec  5 11:51:08 Gateway kernel: IPT INPUT: IN=eth1
> > OUT= MAC=ff:ff:ff:ff:ff:ff:00:60:97:b8:ac:d6:08:00
> > SRC=0.0.0.0 DST=255.255.255.255 LEN=328 TOS=0x00
> > PREC=0x00 TTL=32 ID=35181 PROTO=UDP SPT=68 DPT=67
> > LEN=308 
> > 
> > Thanks again in advance.
> > 
> > __________________________________________________
> > Do You Yahoo!?
> > Buy the perfect holiday gifts at Yahoo! Shopping.
> > http://shopping.yahoo.com
> > 
> 


__________________________________________________
Do You Yahoo!?
Buy the perfect holiday gifts at Yahoo! Shopping.
http://shopping.yahoo.com