Ik kan niet meer op de servers van Napster inloggen, alleen nog maar op servers met zeer weinig gebruikers. Ik heb al een .REG bestandje gedownload die alles uit mijn register haalt, dus mijn IP is niet gebanned. Waar kan dit aan liggen?
Ik gebruik Winroute als firewall met NAT aan en een DHCP server. Het heeft altijd gewerkt, maar sinds vandaag krijg ik de volgende melding in mijn Security Log:
[08/Nov/2000 23:38:49] NAT: Detected TCP packet which has no entry in the NAT table. The following line contains suspicious packet dump:
[08/Nov/2000 23:38:49] NAT: + proto:TCP, len:60, ip+port:207.195.111.4:8888 -> 212.204.191.183:61788, flags: FIN ACK , seq:1059584819 ack:30653456, win:5840, tcplen:0
[08/Nov/2000 23:38:49] NAT: Detected TCP packet which has no entry in the NAT table. The following line contains suspicious packet dump:
[08/Nov/2000 23:38:49] NAT: + proto:TCP, len:60, ip+port:207.195.111.5:8888 -> 212.204.191.183:61806, flags: FIN ACK , seq:1109298173 ack:1372311, win:32120, tcplen:0
[08/Nov/2000 23:38:55] NAT: Detected TCP packet which has no entry in the NAT table. The following line contains suspicious packet dump:
[08/Nov/2000 23:38:55] NAT: + proto:TCP, len:60, ip+port:207.195.111.2:8888 -> 212.204.191.183:61812, flags: FIN ACK , seq:3217632974 ack:1384814, win:8760, tcplen:0
[08/Nov/2000 23:38:55] NAT: Detected TCP packet which has no entry in the NAT table. The following line contains suspicious packet dump:
[08/Nov/2000 23:38:55] NAT: + proto:TCP, len:60, ip+port:207.195.111.5:8888 -> 212.204.191.183:61806, flags: FIN ACK , seq:1109298173 ack:1372311, win:32120, tcplen:0
[08/Nov/2000 23:39:03] NAT: Detected TCP packet which has no entry in the NAT table. The following line contains suspicious packet dump:
[08/Nov/2000 23:39:03] NAT: + proto:TCP, len:60, ip+port:207.195.111.2:8888 -> 212.204.191.183:61812, flags: FIN ACK , seq:3217632974 ack:1384814, win:8760, tcplen:0
[08/Nov/2000 23:39:07] NAT: Detected TCP packet which has no entry in the NAT table. The following line contains suspicious packet dump:
[08/Nov/2000 23:39:07] NAT: + proto:TCP, len:60, ip+port:207.195.111.5:8888 -> 212.204.191.183:61806, flags: FIN ACK , seq:1109298173 ack:1372311, win:32120, tcplen:0
[08/Nov/2000 23:39:19] NAT: Detected TCP packet which has no entry in the NAT table. The following line contains suspicious packet dump:
[08/Nov/2000 23:39:19] NAT: + proto:TCP, len:60, ip+port:207.195.111.2:8888 -> 212.204.191.183:61812, flags: FIN ACK , seq:3217632974 ack:1384814, win:8760, tcplen:0
[08/Nov/2000 23:39:31] NAT: Detected TCP packet which has no entry in the NAT table. The following line contains suspicious packet dump:
[08/Nov/2000 23:39:31] NAT: + proto:TCP, len:60, ip+port:207.195.111.5:8888 -> 212.204.191.183:61806, flags: FIN ACK , seq:1109298173 ack:1372311, win:32120, tcplen:0
[08/Nov/2000 23:39:37] NAT: Detected TCP packet which has no entry in the NAT table. The following line contains suspicious packet dump:
[08/Nov/2000 23:39:37] NAT: + proto:TCP, len:60, ip+port:207.195.111.4:8888 -> 212.204.191.183:61788, flags: FIN ACK , seq:1059584819 ack:30653456, win:5840, tcplen:0
[08/Nov/2000 23:39:50] NAT: Detected TCP packet which has no entry in the NAT table. The following line contains suspicious packet dump:
[08/Nov/2000 23:39:50] NAT: + proto:TCP, len:60, ip+port:209.193.50.16:4444 -> 212.204.191.183:61474, flags: FIN ACK , seq:421821169 ack:655788, win:31944, tcplen:0
[08/Nov/2000 23:39:52] NAT: Detected TCP packet which has no entry in the NAT table. The following line contains suspicious packet dump:
[08/Nov/2000 23:39:52] NAT: + proto:TCP, len:60, ip+port:207.195.111.2:8888 -> 212.204.191.183:61812, flags: FIN ACK , seq:3217632974 ack:1384814, win:8760, tcplen:0
Hoe kan dit, dit zou toch niet mogen als ik het request van binnen het netwerk, dan moet het toch door worden gelaten?
Ik gebruik Winroute als firewall met NAT aan en een DHCP server. Het heeft altijd gewerkt, maar sinds vandaag krijg ik de volgende melding in mijn Security Log:
[08/Nov/2000 23:38:49] NAT: Detected TCP packet which has no entry in the NAT table. The following line contains suspicious packet dump:
[08/Nov/2000 23:38:49] NAT: + proto:TCP, len:60, ip+port:207.195.111.4:8888 -> 212.204.191.183:61788, flags: FIN ACK , seq:1059584819 ack:30653456, win:5840, tcplen:0
[08/Nov/2000 23:38:49] NAT: Detected TCP packet which has no entry in the NAT table. The following line contains suspicious packet dump:
[08/Nov/2000 23:38:49] NAT: + proto:TCP, len:60, ip+port:207.195.111.5:8888 -> 212.204.191.183:61806, flags: FIN ACK , seq:1109298173 ack:1372311, win:32120, tcplen:0
[08/Nov/2000 23:38:55] NAT: Detected TCP packet which has no entry in the NAT table. The following line contains suspicious packet dump:
[08/Nov/2000 23:38:55] NAT: + proto:TCP, len:60, ip+port:207.195.111.2:8888 -> 212.204.191.183:61812, flags: FIN ACK , seq:3217632974 ack:1384814, win:8760, tcplen:0
[08/Nov/2000 23:38:55] NAT: Detected TCP packet which has no entry in the NAT table. The following line contains suspicious packet dump:
[08/Nov/2000 23:38:55] NAT: + proto:TCP, len:60, ip+port:207.195.111.5:8888 -> 212.204.191.183:61806, flags: FIN ACK , seq:1109298173 ack:1372311, win:32120, tcplen:0
[08/Nov/2000 23:39:03] NAT: Detected TCP packet which has no entry in the NAT table. The following line contains suspicious packet dump:
[08/Nov/2000 23:39:03] NAT: + proto:TCP, len:60, ip+port:207.195.111.2:8888 -> 212.204.191.183:61812, flags: FIN ACK , seq:3217632974 ack:1384814, win:8760, tcplen:0
[08/Nov/2000 23:39:07] NAT: Detected TCP packet which has no entry in the NAT table. The following line contains suspicious packet dump:
[08/Nov/2000 23:39:07] NAT: + proto:TCP, len:60, ip+port:207.195.111.5:8888 -> 212.204.191.183:61806, flags: FIN ACK , seq:1109298173 ack:1372311, win:32120, tcplen:0
[08/Nov/2000 23:39:19] NAT: Detected TCP packet which has no entry in the NAT table. The following line contains suspicious packet dump:
[08/Nov/2000 23:39:19] NAT: + proto:TCP, len:60, ip+port:207.195.111.2:8888 -> 212.204.191.183:61812, flags: FIN ACK , seq:3217632974 ack:1384814, win:8760, tcplen:0
[08/Nov/2000 23:39:31] NAT: Detected TCP packet which has no entry in the NAT table. The following line contains suspicious packet dump:
[08/Nov/2000 23:39:31] NAT: + proto:TCP, len:60, ip+port:207.195.111.5:8888 -> 212.204.191.183:61806, flags: FIN ACK , seq:1109298173 ack:1372311, win:32120, tcplen:0
[08/Nov/2000 23:39:37] NAT: Detected TCP packet which has no entry in the NAT table. The following line contains suspicious packet dump:
[08/Nov/2000 23:39:37] NAT: + proto:TCP, len:60, ip+port:207.195.111.4:8888 -> 212.204.191.183:61788, flags: FIN ACK , seq:1059584819 ack:30653456, win:5840, tcplen:0
[08/Nov/2000 23:39:50] NAT: Detected TCP packet which has no entry in the NAT table. The following line contains suspicious packet dump:
[08/Nov/2000 23:39:50] NAT: + proto:TCP, len:60, ip+port:209.193.50.16:4444 -> 212.204.191.183:61474, flags: FIN ACK , seq:421821169 ack:655788, win:31944, tcplen:0
[08/Nov/2000 23:39:52] NAT: Detected TCP packet which has no entry in the NAT table. The following line contains suspicious packet dump:
[08/Nov/2000 23:39:52] NAT: + proto:TCP, len:60, ip+port:207.195.111.2:8888 -> 212.204.191.183:61812, flags: FIN ACK , seq:3217632974 ack:1384814, win:8760, tcplen:0
Hoe kan dit, dit zou toch niet mogen als ik het request van binnen het netwerk, dan moet het toch door worden gelaten?
Ik snap het wel, maar ik begrijp het niet. [q]Bassie[/q]