Date: 2005-02-02 04:47 am (UTC)
That's FireHOL, which is converted to iptables rules by a bash shell script. On the plus side, it's easier to read, write, and all the malformed packet attacks are handled automatically. On the minus side, the table rules aren't editted directly. I've been using iptables -vL to follow what rules it's set, but they all look sensible.

Your idea about weird NAT may have something to it, vis.
ppp0      Link encap:Point-to-Point Protocol
          inet addr:213.78.120.250  P-t-P:172.26.131.160  Mask:255.255.255.255

which appears to imply the remote end has NAT weirdness going on, even though my actual IP address is a public IP. TBH, I have no idea what the ISP are up to there.

FireHOL logs packets that don't match any of its rules by default. However, I may be able to set up even more logging, but then I suspect I'll be swamped by info and unable to find the specific bit I need.
This account has disabled anonymous posting.
If you don't have an account you can create one now.
HTML doesn't work in the subject.
More info about formatting

March 2023

S M T W T F S
   1234
567891011
12131415161718
19202122232425
26 2728293031 

Most Popular Tags

Style Credit

Expand Cut Tags

No cut tags
Page generated Jul. 3rd, 2025 08:20 pm
Powered by Dreamwidth Studios