August 27th, 2003 04:30 PM
zonealarm oddity or maybe not ?
I just upgraded the firmware on my linksys befsr41 and was reconfiguring everything when I noticed something odd in my zonealarm log - I've no idea if it's a ZA glitch or what.. any ideas ?
heres is a paste of my ZA log soon after a fresh system boot:
ZoneAlarm Logging Client v3.0.118
ACCESS,2003/08/27,09:12:32 -4:00 GMT,ZoneAlarm Pro was blocked from connecting to the Internet (184.108.40.206: DNS).,N/A,N/A
FWOUT,2003/08/27,09:12:32 -4:00 GMT,192.168.1.101:137,220.127.116.11:137,UDP
In above you can see that I block ZoneAlarm from checking with Zone Labs at 18.104.22.168 and right after is a port 137 outgoing block to 22.214.171.124:137 that originates from something in my PC. (no idea what)
What's odd is 126.96.36.199 is the exact reverse of 188.8.131.52 - Is this normal ZA behavior - should I be worried ?
Every time I close the door on reality it comes in through the windows. —Jennifer Unlimited
August 28th, 2003 01:22 AM
The addresses are the same. The backward version has something to do with
reverse dns lookup
Zonealarm has a bug where it wants to perform this lookup as soon as it starts
Apparently they have promised to fix it.
I came in to the world with nothing. I still have most of it.