usually i just ignore disgard syslog messages but these are so redundant and going on for such a long time i figure i should find out more about them.

these are sent from a remote watchguard soho6 client. does anyone have any idea what they are? TIA.

2005-02-24 18:26:28 Local0.Warning 192.168.27.1 IP: discard from 70.21.162.105 port 1306 to 70.21.236.75 port 445 TCP SYN (default)
2005-02-24 18:26:29 Local0.Warning 192.168.17.1 IP: discard from 81.244.181.48 port 52183 to 68.167.42.2 port 1433 TCP SYN (default)

2005-02-24 18:29:40 Local0.Warning 192.168.31.1 IP: discard from 70.21.156.139 port 2240 to 70.21.143.248 port 139 TCP SYN (default)

2005-02-24 18:38:39 Local0.Warning 192.168.17.1 IP: discard from 68.167.80.172 port 2852 to 68.167.42.2 port 135 TCP SYN (default)
2005-02-24 18:38:41 Local0.Warning 192.168.17.1 IP: discard from 68.167.80.172 port 2879 to 68.167.42.2 port 445 TCP SYN (default)
2005-02-24 18:38:41 Local0.Warning 192.168.17.1 IP: discard from 68.167.80.172 port 2853 to 68.167.42.2 port 1025 TCP SYN (default)
2005-02-24 18:38:41 Local0.Warning 192.168.17.1 IP: discard from 68.167.80.172 port 2883 to 68.167.42.2 port 139 TCP SYN (default)
2005-02-24 18:38:41 Local0.Warning 192.168.17.1 IP: discard from 68.167.80.172 port 2887 to 68.167.42.2 port 1433 TCP SYN (default)
2005-02-24 18:38:42 Local0.Warning 192.168.17.1 IP: discard from 68.167.80.172 port 2852 to 68.167.42.2 port 135 TCP SYN (default)
2005-02-24 18:38:42 Local0.Warning 192.168.17.1 IP: discard from 68.167.80.172 port 2879 to 68.167.42.2 port 445 TCP SYN (default)
2005-02-24 18:38:44 Local7.Debug ECH_LCOS Rule 'Local Security Authority System Service': Permitted: Out UDP, localhost:3834->mail.athena.com [10.0.0.20:88], Owner: C:\WINNT\SYSTEM32\LSASS.EXE
2005-02-24 18:38:44 Local0.Warning 192.168.17.1 IP: discard from 68.167.80.172 port 2887 to 68.167.42.2 port 1433 TCP SYN (default)
2005-02-24 18:38:44 Local0.Warning 192.168.17.1 IP: discard from 68.167.80.172 port 2883 to 68.167.42.2 port 139 TCP SYN (default)
2005-02-24 18:38:46 Local7.Debug ECH_LCOS Rule 'Local Security Authority System Service': Permitted: In UDP, mail.athena.com [10.0.0.20:88]->localhost:3834, Owner: C:\WINNT\SYSTEM32\LSASS.EXE
2005-02-24 18:38:49 Local0.Warning 192.168.17.1 IP: discard from 68.167.80.172 port 2853 to 68.167.42.2 port 1025 TCP SYN (default)
2005-02-24 18:38:49 Local0.Warning 192.168.17.1 IP: discard from 68.167.80.172 port 2852 to 68.167.42.2 port 135 TCP SYN (default)
2005-02-24 18:38:49 Local0.Warning 192.168.17.1 IP: discard from 68.167.80.172 port 2879 to 68.167.42.2 port 445 TCP SYN (default)
2005-02-24 18:38:49 Local0.Warning 192.168.17.1 IP: discard from 68.167.80.172 port 2883 to 68.167.42.2 port 139 TCP SYN (default)

edit: sorry ive been going threw log files all day and guess im burnt out. the second ip was the ext interface :-[