Re: (PM) Several questions on filters and syslog msgs

MikeK@NetDotCom ("MikeK@NetDotCom")
Thu, 1 Apr 1999 11:43:17 -0500

The filters are applied to the wan port of a ORHS, nowhere else.

Doesn't the permit at the end allow all that is not denied including tcp
establised sessions?

If not, what would the appropriate entry be?

Mike K

-----Original Message-----
From: Thomas C Kinnen <tkinnen@livingston.com>
To: portmaster-users@livingston.com <portmaster-users@livingston.com>
Date: Thursday, April 01, 1999 11:27 AM
Subject: Re: (PM) Several questions on filters and syslog msgs

>"MikeK@NetDotCom" wrote:
>>
>> 209.57.166.0 and 209.57.176.0 are my subnets. The first syslog section
>> shows what I believe is a DOS attack. Am I correct? The second section
has
>> to do with the filters. I so what I believe are valid requests that are
>> being blocked. Any ideas?
>>
>
>One other issue I just noted you do not allow tcp established sessions
>through. That's going to cause major problems.
>
>--
>Thomas C Kinnen - <tkinnen@ra.lucent.com> <tkinnen@sobhrach.com>
>[RADIUS Test Engineer] - LUCENT Technologies RABU
>"All of the opinions stated above are my own and not my employer's,
>unless they were given to me by my employer"
>-
>To unsubscribe, email 'majordomo@livingston.com' with
>'unsubscribe portmaster-users' in the body of the message.
>Searchable list archive: <URL:http://www.livingston.com/Tech/archive/>
>

-
To unsubscribe, email 'majordomo@livingston.com' with
'unsubscribe portmaster-users' in the body of the message.
Searchable list archive: <URL:http://www.livingston.com/Tech/archive/>