|
-
December 10th, 2003, 04:57 PM
#2
Use Ethereal or TCPDump to look at the flags in the packets that trigger the alert. They are almost certainly not set to SYN alone and are probably a response to something your machine sent out. The responding machine is setting some IP option that is triggering the IDS rule.
Don\'t SYN us.... We\'ll SYN you.....
\"A nation that draws too broad a difference between its scholars and its warriors will have its thinking done by cowards, and its fighting done by fools.\" - Thucydides
Posting Permissions
- You may not post new threads
- You may not post replies
- You may not post attachments
- You may not edit your posts
-
Forum Rules
|
|