My Draytek router is frequently sending me an email of which this is typical:
2014/06/09 09:52:00 -- [DOS][Block][syn_flood, timeout=10][192.168.202.203:53553->208.78.94.72:80][TCP][HLen=20, TLen=64, Flag=S, Seq=2621011111, Ack=0, Win=65535]
And here's another variation:
2014/06/09 09:04:43 -- [DOS][Block][tcp_flag, scanner=fin_wo_ack][192.168.202.211:49390->173.194.34.90:80][TCP][HLen=20, TLen=52, Flag=F, Seq=2803993150, Ack=0, Win=65535]
What proactive action should I take or is it something I need not worry about?



Print Thread
