SFW2-INext-ACC-TCP op Suse 9.1 in messages.

Pagina: 1
Acties:

  • baziel
  • Registratie: Februari 2003
  • Laatst online: 26-01-2023
hoi,

in mijn /var/log/messages zie ik heel heel vaak de volgende melding terugkomen:
code:
1
2
3
4
5
6
7
8
9
Jul 25 15:18:59 bazielamd kernel: SFW2-INext-ACC-TCP IN=eth0 OUT= MAC=00:c0:49:dc:5f:36:00:30:05:62:5a:5c:08:00 SRC=10.3.0.4 DST=10.3.0.1 LEN=60 TOS=0x00 PREC=0x00 TTL=64 ID=7494 DF PROTO=TCP SPT=32916 DPT=80 WINDOW=5840 RES=0x00 SYN URGP=0 OPT (020405B40402080A00F8688E0000000001030300) 
Jul 25 15:22:00 bazielamd kernel: SFW2-INext-ACC-TCP IN=eth0 OUT= MAC=00:c0:49:dc:5f:36:00:30:05:62:5a:5c:08:00 SRC=10.3.0.4 DST=10.3.0.1 LEN=60 TOS=0x00 PREC=0x00 TTL=64 ID=5603 DF PROTO=TCP SPT=32917 DPT=80 WINDOW=5840 RES=0x00 SYN URGP=0 OPT (020405B40402080A00FB28600000000001030300) 
Jul 25 15:25:06 bazielamd kernel: SFW2-INext-ACC-TCP IN=eth0 OUT= MAC=00:c0:49:dc:5f:36:00:30:05:62:5a:5c:08:00 SRC=10.3.0.4 DST=10.3.0.1 LEN=60 TOS=0x00 PREC=0x00 TTL=64 ID=23366 DF PROTO=TCP SPT=32918 DPT=80 WINDOW=5840 RES=0x00 SYN URGP=0 OPT (020405B40402080A00FDFFE60000000001030300) 
Jul 25 15:26:16 bazielamd kernel: SFW2-INext-ACC-TCP IN=eth0 OUT= MAC=00:c0:49:dc:5f:36:00:30:05:62:5a:5c:08:00 SRC=10.3.0.4 DST=10.3.0.1 LEN=60 TOS=0x00 PREC=0x00 TTL=64 ID=49102 DF PROTO=TCP SPT=32919 DPT=80 WINDOW=5840 RES=0x00 SYN URGP=0 OPT (020405B40402080A00FF137B0000000001030300) 
Jul 25 15:26:39 bazielamd kernel: SFW2-INext-ACC-TCP IN=eth0 OUT= MAC=00:c0:49:dc:5f:36:00:30:05:62:5a:5c:08:00 SRC=10.3.0.4 DST=10.3.0.1 LEN=60 TOS=0x00 PREC=0x00 TTL=64 ID=47904 DF PROTO=TCP SPT=32920 DPT=80 WINDOW=5840 RES=0x00 SYN URGP=0 OPT (020405B40402080A00FF6C820000000001030300) 
Jul 25 15:29:39 bazielamd kernel: SFW2-INext-ACC-TCP IN=eth0 OUT= MAC=00:c0:49:dc:5f:36:00:30:05:62:5a:5c:08:00 SRC=10.3.0.4 DST=10.3.0.1 LEN=60 TOS=0x00 PREC=0x00 TTL=64 ID=37034 DF PROTO=TCP SPT=32932 DPT=80 WINDOW=5840 RES=0x00 SYN URGP=0 OPT (020405B40402080A01022C0B0000000001030300) 
Jul 25 15:30:34 bazielamd kernel: SFW2-INext-ACC-TCP IN=eth0 OUT= MAC=00:c0:49:dc:5f:36:00:30:05:62:5a:5c:08:00 SRC=10.3.0.4 DST=10.3.0.1 LEN=60 TOS=0x00 PREC=0x00 TTL=64 ID=20741 DF PROTO=TCP SPT=32933 DPT=80 WINDOW=5840 RES=0x00 SYN URGP=0 OPT (020405B40402080A010300DE0000000001030300) 
Jul 25 15:30:39 bazielamd kernel: SFW2-INext-ACC-TCP IN=eth0 OUT= MAC=00:c0:49:dc:5f:36:00:30:05:62:5a:5c:08:00 SRC=10.3.0.4 DST=10.3.0.1 LEN=60 TOS=0x00 PREC=0x00 TTL=64 ID=25888 DF PROTO=TCP SPT=32934 DPT=80 WINDOW=5840 RES=0x00 SYN URGP=0 OPT (020405B40402080A0103173A0000000001030300) 
Jul 25 15:31:18 bazielamd kernel: SFW2-INext-ACC-TCP IN=eth0 OUT= MAC=00:c0:49:dc:5f:36:00:30:05:62:5a:5c:08:00 SRC=10.3.0.4 DST=10.3.0.1 LEN=60 TOS=0x00 PREC=0x00 TTL=64 ID=47602 DF PROTO=TCP SPT=32935 DPT=80 WINDOW=5840 RES=0x00 SYN URGP=0 OPT (020405B40402080A0103ADB30000000001030300)


sorry voor het scrollen,
iemand een idee of dat ik daar wat mee mot?

Baziel


  • igmar
  • Registratie: April 2000
  • Laatst online: 31-01 23:50

igmar

ISO20022

De meldingen in kwestie geven aan dat de kernel een verbinding op poort 80 heeft geaccepteerd. Je kan ze of negeren, of de rules uit het iptables script halen.