I think it may accept all established connection and drop all othertcp packets, such as packets made by nmap.Normal connection shouldstart with syn packet, so a first ack/rst packet may means someone isscanning your box.It's my view.Wish to help.
I think it may accept all established connection and drop all othertcp packets, such as packets made by nmap.Normal connection shouldstart with syn packet, so a first ack/rst packet may means someone isscanning your box.It's my view.Wish to help.