Originally posted here by jim29
How can Sygate pick up the port scan when the public IP address someone uses for a port scan points to my router?

If a port scan is hitting the external interface, it won't hit your Sygate unless you are passing unfiltered traffic back to your machine using sygate.

A decent "edge" firewall will detect the scan 1st regardless of how you pass traffic back to internal
nodes.

Make sense?