Groups | Search | Server Info | Keyboard shortcuts | Login | Register [http] [https] [nntp] [nntps]


Groups > comp.sys.mac.system > #97531

Re: Port scan defense

From Jolly Roger <jollyroger@pobox.com>
Newsgroups comp.sys.mac.system
Subject Re: Port scan defense
Date 2016-12-04 17:14 +0000
Organization People for the Ethical Treatment of Pirates
Message-ID <eaj16tF6j6kU1@mid.individual.net> (permalink)
References <2v6dnX63GZra1dnFnZ2dnUU7-LPNnZ2d@giganews.com>

Show all headers | View raw


On 2016-12-04, Alan Browne <alan.browne@freelunchvideotron.ca> wrote:
> I happened to look at the company WiFi/Router logs the other day and see 
> a barrage of port requests occurring continuously.  I traced some of the 
> IP's (Nigeria, Russia, Belarus ...).
>
> Is this all that common?

Sure. Script kiddies and botnet operators have been scanning ports for
ages. Anyone running any WAN-facing services receives a fairly constant
barrage of traffic, including silly scripted brute force, vulnerability,
and other types of attacks. Nothing new there.

> My router seems to be rejecting them well and if any got through to the 
> Macs firewalls I haven't seen (or looked).

WAN traffic won't reach computers on your network unless you have ports
mapped on the router to one or more of your computers. If you have ports
mapped to your computers, you should have a good idea of what services
you need to worry about.

> For one thing all of our Macs are set to not wake on network requests.
>
> Are there specific vulnerabilities that I need to look at and fix?

Without knowing more about your particular network setup and the
services you are actually running that are exposed to the WAN, that's
hard to answer.

-- 
E-mail sent to this address may be devoured by my ravenous SPAM filter.
I often ignore posts from Google. Use a real news client instead.

JR

Back to comp.sys.mac.system | Previous | NextPrevious in thread | Next in thread | Find similar


Thread

Port scan defense Alan Browne <alan.browne@freelunchvideotron.ca> - 2016-12-04 11:45 -0500
  Re: Port scan defense Jolly Roger <jollyroger@pobox.com> - 2016-12-04 17:14 +0000
    Re: Port scan defense Alan Browne <alan.browne@freelunchvideotron.ca> - 2016-12-04 13:09 -0500
      Re: Port scan defense Lewis <g.kreme@gmail.com.dontsendmecopies> - 2016-12-04 18:49 +0000
        Re: Port scan defense JF Mezei <jfmezei.spamnot@vaxination.ca> - 2016-12-04 16:18 -0500
          Re: Port scan defense Lewis <g.kreme@gmail.com.dontsendmecopies> - 2016-12-04 23:34 +0000
          Re: Port scan defense David Ritz <dritz@mindspring.com> - 2016-12-04 19:02 -0600
      Re: Port scan defense Jolly Roger <jollyroger@pobox.com> - 2016-12-04 20:00 +0000
        Re: Port scan defense Alan Browne <alan.browne@freelunchvideotron.ca> - 2016-12-04 15:17 -0500
          Re: Port scan defense Jolly Roger <jollyroger@pobox.com> - 2016-12-05 17:58 +0000
          Re: Port scan defense Nelson <nelson@nowhere.com> - 2016-12-05 14:56 -0500
            Re: Port scan defense John McWilliams <jpmcw@comcast.net> - 2016-12-05 13:01 -0800
              Re: Port scan defense Alan Browne <alan.browne@freelunchvideotron.ca> - 2016-12-05 16:18 -0500
            Re: Port scan defense Alan Browne <alan.browne@freelunchvideotron.ca> - 2016-12-05 16:18 -0500
              Re: Port scan defense Jolly Roger <jollyroger@pobox.com> - 2016-12-05 23:10 +0000
                Re: Port scan defense Alan Browne <alan.browne@freelunchvideotron.ca> - 2016-12-05 18:18 -0500
                Re: Port scan defense Lewis <g.kreme@gmail.com.dontsendmecopies> - 2016-12-05 23:34 +0000
                Re: Port scan defense Alan Browne <alan.browne@freelunchvideotron.ca> - 2016-12-05 18:45 -0500
                Re: Port scan defense Jolly Roger <jollyroger@pobox.com> - 2016-12-06 00:34 +0000
                Re: Port scan defense Alan Browne <alan.browne@freelunchvideotron.ca> - 2016-12-05 20:11 -0500
                Re: Port scan defense Lewis <g.kreme@gmail.com.dontsendmecopies> - 2016-12-06 04:28 +0000
                Re: Port scan defense Alan Browne <alan.browne@freelunchvideotron.ca> - 2016-12-06 08:40 -0500
                Re: Port scan defense Jolly Roger <jollyroger@pobox.com> - 2016-12-06 15:17 +0000
                Re: Port scan defense Barry Margolin <barmar@alum.mit.edu> - 2016-12-06 11:24 -0500
                Re: Port scan defense Jolly Roger <jollyroger@pobox.com> - 2016-12-06 16:56 +0000
                Re: Port scan defense Barry Margolin <barmar@alum.mit.edu> - 2016-12-07 12:11 -0500
                Apple Ads (Re: Port scan defense) Doc O'Leary  <droleary@2015usenet1.subsume.com> - 2016-12-08 21:24 +0000
                Re: Apple Ads (Re: Port scan defense) Alrescha <alrescha@gmail.com> - 2016-12-08 16:46 -0500
                Re: Apple Ads (Re: Port scan defense) Barry Margolin <barmar@alum.mit.edu> - 2016-12-09 10:39 -0500
                Re: Apple Ads (Re: Port scan defense) Alrescha <alrescha@gmail.com> - 2016-12-09 13:03 -0500
                Re: Apple Ads (Re: Port scan defense) dorayme <do_ray_me@bigpond.com> - 2016-12-10 09:21 +1100
                Re: Apple Ads (Re: Port scan defense) Lewis <g.kreme@gmail.com.dontsendmecopies> - 2016-12-10 04:36 +0000
                Re: Apple Ads (Re: Port scan defense) Doc O'Leary  <droleary@2015usenet1.subsume.com> - 2016-12-10 19:39 +0000
                Re: Apple Ads (Re: Port scan defense) Alan Browne <alan.browne@freelunchvideotron.ca> - 2016-12-10 15:55 -0500
                Re: Apple Ads (Re: Port scan defense) Alan Browne <alan.browne@freelunchvideotron.ca> - 2016-12-10 16:05 -0500
                Re: Apple Ads (Re: Port scan defense) dorayme <do_ray_me@bigpond.com> - 2016-12-09 12:17 +1100
                Re: Apple Ads (Re: Port scan defense) Doc O'Leary  <droleary@2015usenet1.subsume.com> - 2016-12-09 14:18 +0000
                Re: Apple Ads (Re: Port scan defense) Barry Margolin <barmar@alum.mit.edu> - 2016-12-09 10:46 -0500
                Re: Apple Ads (Re: Port scan defense) Doc O'Leary  <droleary@2015usenet1.subsume.com> - 2016-12-10 20:11 +0000
                Re: Apple Ads (Re: Port scan defense) dorayme <do_ray_me@bigpond.com> - 2016-12-10 09:48 +1100
                Re: Apple Ads (Re: Port scan defense) Doc O'Leary  <droleary@2015usenet1.subsume.com> - 2016-12-10 20:42 +0000
                Re: Apple Ads (Re: Port scan defense) dorayme <do_ray_me@bigpond.com> - 2016-12-11 13:11 +1100
                Re: Apple Ads (Re: Port scan defense) Doc O'Leary  <droleary@2015usenet1.subsume.com> - 2016-12-12 00:06 +0000
                Re: Apple Ads (Re: Port scan defense) dorayme <do_ray_me@bigpond.com> - 2016-12-12 14:22 +1100
                Re: Apple Ads (Re: Port scan defense) Doc O'Leary  <droleary@2015usenet1.subsume.com> - 2016-12-12 23:41 +0000
                Re: Apple Ads (Re: Port scan defense) nospam <nospam@nospam.invalid> - 2016-12-12 18:59 -0500
                Re: Apple Ads (Re: Port scan defense) dorayme <do_ray_me@bigpond.com> - 2016-12-13 13:37 +1100
                Re: Apple Ads (Re: Port scan defense) Doc O'Leary  <droleary@2015usenet1.subsume.com> - 2016-12-13 22:03 +0000
                Re: Apple Ads (Re: Port scan defense) dorayme <do_ray_me@bigpond.com> - 2016-12-14 21:54 +1100
                Re: Apple Ads (Re: Port scan defense) Doc O'Leary  <droleary@2015usenet1.subsume.com> - 2016-12-14 19:48 +0000
                Re: Apple Ads (Re: Port scan defense) dorayme <do_ray_me@bigpond.com> - 2016-12-15 09:02 +1100
                Re: Apple Ads (Re: Port scan defense) Doc O'Leary  <droleary@2015usenet1.subsume.com> - 2016-12-15 21:45 +0000
                Re: Apple Ads (Re: Port scan defense) dorayme <do_ray_me@bigpond.com> - 2016-12-16 11:28 +1100
                Re: Apple Ads (Re: Port scan defense) Doc O'Leary  <droleary@2015usenet1.subsume.com> - 2016-12-17 16:06 +0000
                Re: Apple Ads (Re: Port scan defense) dorayme <do_ray_me@bigpond.com> - 2016-12-18 10:10 +1100
                Re: Apple Ads (Re: Port scan defense) Doc O'Leary  <droleary@2015usenet1.subsume.com> - 2016-12-18 16:22 +0000
                Re: Apple Ads (Re: Port scan defense) dorayme <do_ray_me@bigpond.com> - 2016-12-19 10:05 +1100
                Re: Apple Ads (Re: Port scan defense) Doc O'Leary  <droleary@2015usenet1.subsume.com> - 2016-12-19 15:38 +0000
                Re: Apple Ads (Re: Port scan defense) dorayme <do_ray_me@bigpond.com> - 2016-12-24 07:00 +1100
                Re: Apple Ads (Re: Port scan defense) Lewis <g.kreme@gmail.com.dontsendmecopies> - 2016-12-13 05:35 +0000
                Re: Apple Ads (Re: Port scan defense) Alan Browne <alan.browne@freelunchvideotron.ca> - 2016-12-09 18:03 -0500
                Re: Apple Ads (Re: Port scan defense) JF Mezei <jfmezei.spamnot@vaxination.ca> - 2016-12-09 18:18 -0500
                Re: Apple Ads (Re: Port scan defense) nospam <nospam@nospam.invalid> - 2016-12-09 18:27 -0500
                Re: Apple Ads (Re: Port scan defense) Alan Browne <alan.browne@freelunchvideotron.ca> - 2016-12-10 09:33 -0500
                Re: Apple Ads (Re: Port scan defense) nospam <nospam@nospam.invalid> - 2016-12-10 10:24 -0500
                Re: Apple Ads (Re: Port scan defense) Alan Browne <alan.browne@freelunchvideotron.ca> - 2016-12-10 12:02 -0500
                Re: Apple Ads (Re: Port scan defense) nospam <nospam@nospam.invalid> - 2016-12-10 12:40 -0500
                Re: Apple Ads (Re: Port scan defense) Alan Browne <alan.browne@freelunchvideotron.ca> - 2016-12-10 12:43 -0500
                Re: Port scan defense Nelson <nelson@nowhere.com> - 2016-12-09 07:02 -0500
                Re: Port scan defense Barry Margolin <barmar@alum.mit.edu> - 2016-12-09 10:49 -0500
                Re: Port scan defense MistahJohnson <null@example.com> - 2016-12-10 07:07 +0000
                Re: Port scan defense Nelson <nelson@nowhere.com> - 2016-12-09 07:03 -0500
                Re: Port scan defense nospam <nospam@nospam.invalid> - 2016-12-09 10:30 -0500
                Re: Port scan defense Barry Margolin <barmar@alum.mit.edu> - 2016-12-09 10:51 -0500
                Re: Port scan defense Don Bruder <dakidd@sonic.net> - 2016-12-06 09:30 -0800
                Re: Port scan defense nospam <nospam@nospam.invalid> - 2016-12-06 12:38 -0500
                Re: Port scan defense Krzysztof Mitko <invalid@kmitko.dot.list.at.pl> - 2016-12-06 18:50 +0100
                Re: Port scan defense nospam <nospam@nospam.invalid> - 2016-12-06 12:53 -0500
                Re: Port scan defense Nelson <nelson@nowhere.com> - 2016-12-09 07:07 -0500
                Re: Port scan defense nospam <nospam@nospam.invalid> - 2016-12-09 10:30 -0500
                Re: Port scan defense Barry Margolin <barmar@alum.mit.edu> - 2016-12-09 11:00 -0500
                Re: Port scan defense nospam <nospam@nospam.invalid> - 2016-12-09 11:03 -0500
                Re: Port scan defense Barry Margolin <barmar@alum.mit.edu> - 2016-12-10 17:21 -0500
                Re: Port scan defense nospam <nospam@nospam.invalid> - 2016-12-10 17:42 -0500
                Re: Port scan defense Don Bruder <dakidd@sonic.net> - 2016-12-10 16:53 -0800
                Re: Port scan defense "Happy.Hobo" <Happy.Hobo@Spam.Invalid> - 2016-12-10 19:28 -0600
                Re: Port scan defense nospam <nospam@nospam.invalid> - 2016-12-11 07:36 -0500
                Re: Port scan defense Lewis <g.kreme@gmail.com.dontsendmecopies> - 2016-12-11 02:24 +0000
                Re: Port scan defense "Happy.Hobo" <Happy.Hobo@Spam.Invalid> - 2016-12-06 16:46 -0600
                Re: Port scan defense Alan Browne <alan.browne@freelunchvideotron.ca> - 2016-12-06 18:51 -0500
                Re: Port scan defense Lewis <g.kreme@gmail.com.dontsendmecopies> - 2016-12-07 07:52 +0000
                Re: Port scan defense Alan Browne <alan.browne@freelunchvideotron.ca> - 2016-12-09 08:17 -0500
                Re: Port scan defense Lewis <g.kreme@gmail.com.dontsendmecopies> - 2016-12-06 15:20 +0000
                Re: Port scan defense Alan Browne <alan.browne@freelunchvideotron.ca> - 2016-12-06 18:51 -0500
                Re: Port scan defense Lewis <g.kreme@gmail.com.dontsendmecopies> - 2016-12-07 07:40 +0000
                Re: Port scan defense Nelson <nelson@nowhere.com> - 2016-12-09 06:55 -0500
  Re: Port scan defense Lewis <g.kreme@gmail.com.dontsendmecopies> - 2016-12-04 18:44 +0000
    Re: Port scan defense Alan Browne <alan.browne@freelunchvideotron.ca> - 2016-12-04 14:23 -0500
      Re: Port scan defense Lewis <g.kreme@gmail.com.dontsendmecopies> - 2016-12-04 19:51 +0000
        Re: Port scan defense Alan Browne <alan.browne@freelunchvideotron.ca> - 2016-12-04 15:15 -0500
      Re: Port scan defense JF Mezei <jfmezei.spamnot@vaxination.ca> - 2016-12-04 16:23 -0500
        Re: Port scan defense Alan Browne <alan.browne@freelunchvideotron.ca> - 2016-12-04 16:36 -0500
          Re: Port scan defense JF Mezei <jfmezei.spamnot@vaxination.ca> - 2016-12-04 16:47 -0500
            Re: Port scan defense Alan Browne <alan.browne@freelunchvideotron.ca> - 2016-12-04 16:52 -0500
          Re: Port scan defense Lewis <g.kreme@gmail.com.dontsendmecopies> - 2016-12-04 23:36 +0000
            Re: Port scan defense Alan Browne <alan.browne@freelunchvideotron.ca> - 2016-12-04 18:51 -0500
        Re: Port scan defense "Happy.Hobo" <Happy.Hobo@Spam.Invalid> - 2016-12-04 18:42 -0600

csiph-web