by Robotech » Wed Jan 11, 2012 12:28 am
Yea - works pretty good - but now I am noticing that I am getting a log of these in the DSL modems logs:
kernel: Intrusion -> IN=nas_0_0_35 OUT= MAC=XX:XX:XX:XX:XX:XX:XX:XX:XX:XX:XX:XX:XX:XX SRC=68.X.X.X DST=50.X.X.X LEN=64 TOS=0x00 PREC=0x00 TTL=51 ID=31118 DF PROTO=TCP SPT=61709 DPT=33441 WINDOW=65535 RES=0x00 SYN URGP=0
kernel: Intrusion -> IN=nas_0_0_35 OUT= MAC=XX:XX:XX:XX:XX:XX:XX:XX:XX:XX:XX:XX:XX:XX SRC=114.XX.111.XX DST=50.XX.XX.XX LEN=48 TOS=0x00 PREC=0xE0 TTL=107 ID=63090 DF PROTO=TCP SPT=33535 DPT=33441 WINDOW=65535 RES=0x00 SYN URGP=0
- Like a LOT - I removed the real numbers just cause I guess.... But I think this crashed my modem 3 times in 4 days of having a bridged and a mac_encapuslated PVC both on and active - so I am turning it off for now- and checking to see if I am just getting denial of service random attack things - or what - a simple reboot fix's it......
Ill be logging the DSL modem out to its own log( rsyslogd rocks!), and Ill keep track of it........
I am hoping that this recent series of events was a coincidence - well see....
:)