Saturday, 8 June 2013

rsyslogd and system log output weird or normal?

rsyslogd and system log output weird or normal?

currently I have this non-stopping output in system log:
[ 89.115236] FW REJECT (input): IN=eth0 OUT= MAC=ff:ff:ff:ff:ff:ff:00:23:5e:6f:ab:d9:08:00 SRC=10.158.0.1 DST=255.255.255.255 LEN=389 TOS=0x00 PREC=0x00 TTL=255 ID=51601 PROTO=UDP SPT=67 DPT=68 LEN=369
Is this normal or is there somebody behind ASA in Alabama trying to sniff at mine eth0 ?
When I activate ipkungfu --panic then it dissappears after a while, but when ipkungfu --panic is switched off, then it comes back ... ???
who is that ? how can I find out more ?

No comments:

Post a Comment