i set up ipchains on my masquerade box to log any rejected packets. i was
browsing the logs, and i noticed that about once every hour to
hour-and-a-half, ipchains is rejecting incoming packets from IP addresses in
the 169.254.0.0/255.255.0.0 network, on ports 137 and 138. why would
anybody outside yale's 130.132.x.x network be trying to talk to my machine
on the netbios ports? i am not running a samba server. what's going on
here?
i suspect there's something legitimate going on here that i just don't
understand, but it seemed a little suspicious, so i figured i should ask.
thanks,
chad
This archive was generated by hypermail 2b29 : Wed Apr 27 2005 - 03:30:03 EDT