Technical Discussion
  >> Home Networking, Internet Connection Sharing, etc.


Register (or login) on our website and you will not see this ad.


These posts have been archived and can no longer be replied to or modified.
  Print Thread
Standard User fyc1690
(newbie) Sun 20-Aug-06 15:39:07
Print Post

info needed


[link to this post]
 
can any tell me what all this means got it off my security log


Aug 20 12:02:34 critical kernel: ADSL link down
Aug 20 12:02:39 critical kernel: ADSL G.994 training
Aug 20 12:02:44 critical kernel: ADSL G.992 started
Aug 20 12:02:49 critical kernel: ADSL G.992 message exchange
Aug 20 12:02:49 critical kernel: ADSL link up, fast, us=448, ds=1920
Aug 20 12:07:29 alert kernel: Intrusion -> IN=ppp_0_38_1 OUT= MAC= SRC=221.127.196.229 DST=82.153.28.142 LEN=64 TOS=0x00 PREC=0x00 TTL=37 ID=47357 DF PROTO=TCP SPT=1891 DPT=135 WINDOW=53760 RES=0x00 SYN URGP=0
Aug 20 12:18:02 alert kernel: Intrusion -> IN=ppp_0_38_1 OUT= MAC= SRC=82.153.137.202 DST=82.153.28.142 LEN=48 TOS=0x00 PREC=0x00 TTL=125 ID=63124 DF PROTO=TCP SPT=4049 DPT=139 WINDOW=16384 RES=0x00 SYN URGP=0
Aug 20 12:24:36 critical kernel: eth1 Link DOWN.
Aug 20 12:24:39 critical kernel: eth1 Link UP.
Aug 20 12:29:38 alert kernel: Intrusion -> IN=ppp_0_38_1 OUT= MAC= SRC=82.153.24.154 DST=82.153.28.142 LEN=48 TOS=0x00 PREC=0x00 TTL=124 ID=53454 DF PROTO=TCP SPT=3056 DPT=135 WINDOW=16384 RES=0x00 SYN URGP=0
Aug 20 12:38:55 alert kernel: Intrusion -> IN=ppp_0_38_1 OUT= MAC= SRC=82.153.24.154 DST=82.153.28.142 LEN=48 TOS=0x00 PREC=0x00 TTL=124 ID=58504 DF PROTO=TCP SPT=3311 DPT=135 WINDOW=16384 RES=0x00 SYN URGP=0
Aug 20 12:48:12 alert kernel: Intrusion -> IN=ppp_0_38_1 OUT= MAC= SRC=82.153.24.154 DST=82.153.28.142 LEN=48 TOS=0x00 PREC=0x00 TTL=124 ID=63782 DF PROTO=TCP SPT=3568 DPT=135 WINDOW=16384 RES=0x00 SYN URGP=0
Aug 20 12:57:28 alert kernel: Intrusion -> IN=ppp_0_38_1 OUT= MAC= SRC=82.153.24.154 DST=82.153.28.142 LEN=48 TOS=0x00 PREC=0x00 TTL=124 ID=3308 DF PROTO=TCP SPT=3825 DPT=135 WINDOW=16384 RES=0x00 SYN URGP=0
Aug 20 13:06:46 alert kernel: Intrusion -> IN=ppp_0_38_1 OUT= MAC= SRC=82.153.24.154 DST=82.153.28.142 LEN=48 TOS=0x00 PREC=0x00 TTL=124 ID=8297 DF PROTO=TCP SPT=4079 DPT=135 WINDOW=16384 RES=0x00 SYN URGP=0
Aug 20 13:18:51 alert kernel: Intrusion -> IN=ppp_0_38_1 OUT= MAC= SRC=82.153.11.140 DST=82.153.28.142 LEN=48 TOS=0x00 PREC=0x00 TTL=125 ID=43349 DF PROTO=TCP SPT=4540 DPT=445 WINDOW=65535 RES=0x00 SYN URGP=0
Aug 20 13:28:09 alert kernel: Intrusion -> IN=ppp_0_38_1 OUT= MAC= SRC=82.153.11.140 DST=82.153.28.142 LEN=48 TOS=0x00 PREC=0x00 TTL=125 ID=27975 DF PROTO=TCP SPT=1311 DPT=445 WINDOW=65535 RES=0x00 SYN URGP=0
Aug 20 13:43:11 alert kernel: Intrusion -> IN=ppp_0_38_1 OUT= MAC= SRC=82.153.39.24 DST=82.153.28.142 LEN=48 TOS=0x00 PREC=0x00 TTL=118 ID=20324 DF PROTO=TCP SPT=4013 DPT=139 WINDOW=16384 RES=0x00 SYN URGP=0
Aug 20 13:48:34 alert kernel: Intrusion -> IN=ppp_0_38_1 OUT= MAC= SRC=82.206.130.197 DST=82.153.28.142 LEN=40 TOS=0x00 PREC=0x00 TTL=119 ID=12088 PROTO=TCP SPT=27847 DPT=139 WINDOW=16384 RES=0x00 SYN URGP=0
Aug 20 13:58:45 alert kernel: Intrusion -> IN=ppp_0_38_1 OUT= MAC= SRC=82.153.12.100 DST=82.153.28.142 LEN=48 TOS=0x00 PREC=0x00 TTL=125 ID=31342 DF PROTO=TCP SPT=3845 DPT=445 WINDOW=16384 RES=0x00 SYN URGP=0
Aug 20 14:07:27 alert kernel: Intrusion -> IN=ppp_0_38_1 OUT= MAC= SRC=82.168.88.60 DST=82.153.28.142 LEN=48 TOS=0x00 PREC=0x00 TTL=116 ID=42085 DF PROTO=TCP SPT=1788 DPT=135 WINDOW=65535 RES=0x00 SYN URGP=0
Aug 20 14:19:22 critical kernel: eth1 Link DOWN.
Aug 20 14:19:25 critical kernel: eth1 Link UP.
Aug 20 14:20:39 alert kernel: Intrusion -> IN=ppp_0_38_1 OUT= MAC= SRC=82.140.142.241 DST=82.153.28.142 LEN=48 TOS=0x00 PREC=0x00 TTL=119 ID=55709 PROTO=TCP SPT=4678 DPT=139 WINDOW=64240 RES=0x00 SYN URGP=38829
Aug 20 14:27:28 alert kernel: Intrusion -> IN=ppp_0_38_1 OUT= MAC= SRC=82.149.126.81 DST=82.153.28.142 LEN=64 TOS=0x00 PREC=0x00 TTL=35 ID=9078 DF PROTO=TCP SPT=1547 DPT=135 WINDOW=53760 RES=0x00 SYN URGP=0
Aug 20 14:47:00 alert kernel: Intrusion -> IN=ppp_0_38_1 OUT= MAC= SRC=82.153.164.42 DST=82.153.28.142 LEN=48 TOS=0x00 PREC=0x00 TTL=124 ID=46259 DF PROTO=TCP SPT=58207 DPT=445 WINDOW=16384 RES=0x00 SYN URGP=0
Aug 20 14:47:03 alert kernel: Intrusion -> IN=ppp_0_38_1 OUT= MAC= SRC=82.153.164.42 DST=82.153.28.142 LEN=48 TOS=0x00 PREC=0x00 TTL=124 ID=46359 DF PROTO=TCP SPT=58207 DPT=445 WINDOW=16384 RES=0x00 SYN URGP=0
Aug 20 15:01:52 alert kernel: Intrusion -> IN=ppp_0_38_1 OUT= MAC= SRC=82.153.36.219 DST=82.153.28.142 LEN=64 TOS=0x00 PREC=0x00 TTL=45 ID=43848 PROTO=TCP SPT=2783 DPT=139 WINDOW=53760 RES=0x00 SYN URGP=0
Aug 20 15:09:41 alert kernel: Intrusion -> IN=ppp_0_38_1 OUT= MAC= SRC=82.153.29.222 DST=82.153.28.142 LEN=52 TOS=0x00 PREC=0x00 TTL=63 ID=24058 DF PROTO=TCP SPT=1675 DPT=139 WINDOW=60352 RES=0x00 SYN URGP=0
Aug 20 15:20:46 alert kernel: Intrusion -> IN=ppp_0_38_1 OUT= MAC= SRC=82.153.198.24 DST=82.153.28.142 LEN=48 TOS=0x00 PREC=0x00 TTL=125 ID=32913 DF PROTO=TCP SPT=1522 DPT=445 WINDOW=60480 RES=0x00 SYN URGP=0
Aug 20 15:29:11 critical kernel: eth1 Link DOWN.
Aug 20 15:29:14 critical kernel: eth1 Link UP.
Aug 20 15:29:45 alert kernel: Intrusion -> IN=ppp_0_38_1 OUT= MAC= SRC=82.153.198.24 DST=82.153.28.142 LEN=48 TOS=0x00 PREC=0x00 TTL=125 ID=60611 DF PROTO=TCP SPT=4153 DPT=445 WINDOW=60480 RES=0x00 SYN URGP=0

is it a good thing or bad thing??
Standard User Sandgrounder
(fountain of knowledge) Sun 20-Aug-06 16:23:45
Print Post

Re: info needed


[re: fyc1690] [link to this post]
 
The firewall is doing what it is supposed to do, and keeping out intrusions.


ZeN Home 500 DrayTek Vigor 2600VG
Acorn RiscPC700 (RiscOS 3.5) - Acorn A410 (RiscOS 3.1) - Sun Ultra 10 (Solaris 7)
Standard User fyc1690
(newbie) Sun 20-Aug-06 19:24:52
Print Post

Re: info needed


[re: Sandgrounder] [link to this post]
 
cheers m8


Register (or login) on our website and you will not see this ad.

  Print Thread

Jump to