 Kip patterson Premium join:2000-10-23 Columbus, OH
| reply to BangBang Re: RPC exploits/scans
I am no longer getting hits, and the amount of ARP traffic is down to its usual 4/sec.
I used Shields UP to check port 135, and it appears to have been blocked inbound by RR.
Edit: I no sooner posted than I noticed that the activity light was on solid. The sniffer showed that it was an attack (60 per second) on the block (10.32.x.x) used locally for the cable-side modem IP addresses. It went away in a few minutes. [text was edited by author 2003-08-12 04:58:08] |