Randy Flood <stock_investor_guy@yahoo.com> writes:
> I remember seeing a tool (I can't think of it off the
> top of my head, but it will come to me. Perhaps
> someone else will see my description and know the name
> of it) that when it sees connections to services that
> you are NOT running automatically would configure
> rules in /etc/hosts.deny to completely deny access to
> that IP to everything.
Portsentry. Also does iptables, like you said. Very nice.
Last I checked, the Debian maintainer of the package had taken over
upstream maintenance as well.
If you like portsentry, you might like logcheck as well.
Mark.
-- A choice between one man and a shovel, or a dozen men with teaspoons is clear to me, and I'm sure it is clear to you also. -- Zimran Ahmed <http://www.winterspeak.com/>
___________________
Nolug mailing list
nolug@nolug.org
This archive was generated by hypermail 2.2.0 : 12/19/08 EST