DrJohn999
July 15th, 2009, 09:03 PM
My 8.04 LTS server, running Shorewall, logged over 10x the usual number of dropped packets yesterday, all directed at 17466 both tcp and udp, total number of dropped packets = 2384. Maybe that's not a lot in some places but here it's a new record.
These came from all sorts of source IP addresses ranging from 28.58.86.134 up to 222.228.125.206 with little or no apparent grouping. Source ports are variable. Timestamps from Jul 14 21:56:07 to Jul 15 04:30:39
Anyone else see this? I'm curious about this sudden change in firewall bashing patterns / quantity.
-- Dr J.
These came from all sorts of source IP addresses ranging from 28.58.86.134 up to 222.228.125.206 with little or no apparent grouping. Source ports are variable. Timestamps from Jul 14 21:56:07 to Jul 15 04:30:39
Anyone else see this? I'm curious about this sudden change in firewall bashing patterns / quantity.
-- Dr J.