[lug] Firewall / Lockdown questions

dio2002 at indra.com dio2002 at indra.com
Wed Aug 1 01:29:03 MDT 2007


>
> On Jul 31, 2007, at 11:56 PM, dio2002 at indra.com wrote:
>
>>> dio2002 at indra.com wrote:
>>>> PORT    STATE    SERVICE
>>>> 623/tcp filtered unknown
>>>> 664/tcp filtered unknown
>>>>
>>>> How do i decipher that?
>>>
>>> Most likely a network provider between where you ran nmap and your
>>> webserver box is filtering those ports and nmap is reporting it.
>>
>> right now i'm testing on a private nw.  the only hop between one
>> box and
>> the server box is via a linksys router.  if what you're saying is
>> true,
>> the linksys would have to be spitting that out.
>
> Since it's TCP, just start up a tcp session to it (telnet) and then
> look at netstat -an on the targethost box to see if you really
> connected to it, or if you're connecting to something "upstream".

thanks for the tip.  it must be coming from the linksys.  it's the only
thing in between my boxes.




More information about the LUG mailing list