LinuxQuestions.org
Review your favorite Linux distribution.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Security
User Name
Password
Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.

Notices


Reply
  Search this Thread
Old 04-09-2015, 11:21 AM   #1
mike2010
Member
 
Registered: Jan 2009
Posts: 132

Rep: Reputation: 15
gettin dos'd 24/7.


it's practically puttin me to sleep at this point...

took this screenshot like 5 minutes ago..

I block 1 ip...and like 10 others like this pop up..

Is there a simple something that auto-blocks IP's if their attempting so many connections at once like this guy..? ...like I could set the # amount ..

Does this screen indicate he's just scanning ports...or he's attempting many connections at once as well ?

It's TCP by the way..had to block off the left side...knowing there's probably hackers galore creepin here.

edit: just noticed that IP is Prudential Insurance...what the..
Attached Thumbnails
Click image for larger version

Name:	dos.jpg
Views:	40
Size:	160.9 KB
ID:	18060  

Last edited by mike2010; 04-09-2015 at 11:27 AM.
 
Old 04-09-2015, 12:04 PM   #2
rtmistler
Moderator
 
Registered: Mar 2011
Location: USA
Distribution: MINT Debian, Angstrom, SUSE, Ubuntu, Debian
Posts: 9,883
Blog Entries: 13

Rep: Reputation: 4930Reputation: 4930Reputation: 4930Reputation: 4930Reputation: 4930Reputation: 4930Reputation: 4930Reputation: 4930Reputation: 4930Reputation: 4930Reputation: 4930
Quote:
Originally Posted by mike2010 View Post
It's TCP by the way..had to block off the left side...knowing there's probably hackers galore creepin here.
Well thanks for the votes of confidence.

I'd block that particular TCP port.
 
Old 04-09-2015, 12:16 PM   #3
mike2010
Member
 
Registered: Jan 2009
Posts: 132

Original Poster
Rep: Reputation: 15
Quote:
Originally Posted by rtmistler View Post
Well thanks for the votes of confidence.

I'd block that particular TCP port.
word....sonnnnnnn
 
Old 04-09-2015, 12:52 PM   #4
Sefyir
Member
 
Registered: Mar 2015
Distribution: Linux Mint
Posts: 634

Rep: Reputation: 316Reputation: 316Reputation: 316Reputation: 316
Quote:
Is there a simple something that auto-blocks IP's if their attempting so many connections at once like this guy..? ...like I could set the # amount ..
This might be helpful

http://www.cyberciti.biz/faq/iptable...-limits-howto/
 
Old 04-09-2015, 06:05 PM   #5
mike2010
Member
 
Registered: Jan 2009
Posts: 132

Original Poster
Rep: Reputation: 15
look at that, the newbie pulls out a winner. (either that or you were google'ing better than me
 
Old 04-09-2015, 07:30 PM   #6
astrogeek
Moderator
 
Registered: Oct 2008
Distribution: Slackware [64]-X.{0|1|2|37|-current} ::12<=X<=15, FreeBSD_12{.0|.1}
Posts: 6,269
Blog Entries: 24

Rep: Reputation: 4196Reputation: 4196Reputation: 4196Reputation: 4196Reputation: 4196Reputation: 4196Reputation: 4196Reputation: 4196Reputation: 4196Reputation: 4196Reputation: 4196
Do you have a firewall in place? If so, can you post the output of iptables-save here.
 
Old 04-10-2015, 05:09 AM   #7
mike2010
Member
 
Registered: Jan 2009
Posts: 132

Original Poster
Rep: Reputation: 15
Quote:
Originally Posted by astrogeek View Post
Do you have a firewall in place? If so, can you post the output of iptables-save here.
astro, it's too much of a security risk for me to do so at this point.

whats your thoughts on that though. (screenshot) Was that just someone scanning ports, or attempting connections (dos-like) as well ?

Trust me, it's like that all day long. different IP every 2 minutes.. I have IPTABLES restricted to just my IP..for all the important stuff like FTP , SSH , etc.. But still doesn't prevent them doing , like they do in screenshot. Software firewall = currently. Thinking of hardware firewall...soon. maybe very soon.
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
Executing Perl under Dos /Creating an executable for DOS alix123 Programming 1 02-15-2006 04:07 AM
gettin the most out of old hardware Paulsuk Linux From Scratch 3 07-20-2005 05:43 PM
need some help, gettin errors DiablosuX102 Slackware - Installation 7 07-09-2004 10:52 PM
help me: gettin into another network saketkoria Linux - Networking 0 07-08-2004 12:43 PM
gettin LI at boot spooge Slackware 12 03-31-2003 11:36 AM

LinuxQuestions.org > Forums > Linux Forums > Linux - Security

All times are GMT -5. The time now is 04:06 AM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration