Re: port scanning

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



On Thu, 18 Mar 2004, Jorge Garcia wrote:

> hi, i need an example of script ( please, i need the example works, becuouse i found a lot on internet that doesnt work) for logging and dropping port scans with iptables.
> thanx

Hello,
did you try the psd match, included in the patch-o-matic?

You can use it that way, or with options. Have a look at the netfilter
extensions HOWTO at
http://netfilter.org/documentation/HOWTO/netfilter-extensions-HOWTO-3.html#ss3.12
iptables -A INPUT -m psd -j DROP

regards
Frederic

--
< Ylli> lol je rigole neuro jte prend pa pr un pervers ms un president
et pere de famille respectable :s
http://www.seclab.jp


[Index of Archives]     [Linux Netfilter Development]     [Linux Kernel Networking Development]     [Netem]     [Berkeley Packet Filter]     [Linux Kernel Development]     [Advanced Routing & Traffice Control]     [Bugtraq]

  Powered by Linux