On 02/24/2010 04:42 PM, Mart Frauenlob wrote: > iptables -I INPUT -m state --state INVALID -j LOG > iptables -I INPUT -m state --state INVALID -j DROP > > then start your nmap scans... you will see what it catches.... > > http://jengelh.medozas.de/projects/chaostables/ <- read this! > http://xtables-addons.sf.net/ <- includes portscan detection module. > > Mart, thanks a lot for the links. I was also looking for such a solution but didn't know much about xtable and add-on. wish you a nice day. -- জয়দীপ বক্সী -- To unsubscribe from this list: send the line "unsubscribe netfilter" in the body of a message to majordomo@xxxxxxxxxxxxxxx More majordomo info at http://vger.kernel.org/majordomo-info.html