Автор: BredBred
Дата сообщения: 13.12.2014 16:20
Подскажите пожалуйстав какую сторону рыть. Ситуация следующая.
Стоит старый Кирюха 6.6 и все нормально работает. Решил я посмотреть в логи "что он у меня запрещает". Здесь увидел много нового и непонятного.
Подскажите пожалуйста, что это за странные попытки соединений?
[more=Кусочек лога..]
Код:
[16:00:55] DROP "Default Drops" packet from LanWan, proto:2, len:28, ip:192.168.0.1 -> 239.255.255.246, plen:8
[16:01:09] DROP "Default Drops" packet from LanWan, proto:2, len:28, ip:192.168.0.1 -> 224.0.0.1, plen:8
[16:01:09] DROP "Default Drops" packet from LanWan, proto:2, len:32, ip:192.168.0.86 -> 224.0.0.251, plen:8
[16:01:09] DROP "Default Drops" packet from LanWan, proto:2, len:32, ip:192.168.0.1 -> 224.0.0.2, plen:8
[16:01:10] DROP "Default Drops" packet from LanWan, proto:2, len:32, ip:192.168.0.41 -> 224.0.0.252, plen:8
[16:01:10] DROP "Default Drops" packet from LanWan, proto:2, len:32, ip:192.168.0.41 -> 239.255.255.250, plen:8
[16:01:10] DROP "Default Drops" packet from LanWan, proto:2, len:32, ip:192.168.0.1 -> 228.8.8.8, plen:8
[16:02:09] DROP "Default Drops" packet from LanWan, proto:2, len:28, ip:192.168.0.1 -> 224.0.0.1, plen:8
[16:02:09] DROP "Default Drops" packet from LanWan, proto:2, len:32, ip:192.168.0.41 -> 224.0.0.252, plen:8
[16:02:09] DROP "Default Drops" packet from LanWan, proto:2, len:32, ip:192.168.0.41 -> 239.255.255.250, plen:8
[16:02:09] DROP "Default Drops" packet from LanWan, proto:2, len:32, ip:192.168.0.41 -> 224.0.0.251, plen:8
[16:02:09] DROP "Default Drops" packet from LanWan, proto:2, len:32, ip:192.168.0.1 -> 224.0.0.2, plen:8
[16:02:10] DROP "Default Drops" packet from LanWan, proto:2, len:32, ip:192.168.0.1 -> 228.8.8.8, plen:8
[16:02:57] DROP "Default Drops" packet from LanWan, proto:2, len:28, ip:192.168.0.1 -> 239.194.75.48, plen:8
[16:02:58] DROP "Default Drops" packet from LanWan, proto:2, len:28, ip:192.168.0.1 -> 239.192.152.143, plen:8
[16:03:01] DROP "Default Drops" packet from LanWan, proto:2, len:28, ip:192.168.0.1 -> 224.1.14.71, plen:8
[16:03:09] DROP "Default Drops" packet to LanWan, proto:UDP, len:244, ip/port:192.168.0.8:138 -> 192.168.0.255:138, udplen:216
[16:03:09] DROP "Default Drops" packet from LanWan, proto:2, len:28, ip:192.168.0.1 -> 224.0.0.1, plen:8
[16:03:09] DROP "Default Drops" packet from LanWan, proto:2, len:32, ip:192.168.0.41 -> 224.0.0.252, plen:8
[16:03:09] DROP "Default Drops" packet from LanWan, proto:2, len:32, ip:192.168.0.41 -> 239.255.255.250, plen:8
[16:03:09] DROP "Default Drops" packet from LanWan, proto:2, len:32, ip:192.168.0.1 -> 228.8.8.8, plen:8
[16:03:10] DROP "Default Drops" packet from LanWan, proto:2, len:32, ip:192.168.0.1 -> 224.0.0.2, plen:8
[16:03:10] DROP "Default Drops" packet from LanWan, proto:2, len:28, ip:192.168.0.1 -> 239.192.152.143, plen:8
[16:03:39] DROP "Default Drops" packet to LanWan, proto:UDP, len:229, ip/port:192.168.0.8:138 -> 192.168.0.255:138, udplen:201
[16:04:08] DROP "Default Drops" packet from LanWan, proto:2, len:28, ip:192.168.0.1 -> 224.0.0.1, plen:8
[16:04:09] DROP "Default Drops" packet from LanWan, proto:2, len:32, ip:192.168.0.1 -> 224.0.0.2, plen:8
[16:04:09] DROP "Default Drops" packet from LanWan, proto:2, len:32, ip:192.168.0.1 -> 228.8.8.8, plen:8
[16:04:25] DROP "Default Drops" packet from LanWan, proto:2, len:28, ip:192.168.0.1 -> 239.192.152.143, plen:8
[16:04:38] DROP "Default Drops" packet from LanWan, proto:UDP, len:229, ip/port:192.168.0.41:138 -> 192.168.0.255:138, udplen:201
[16:05:07] DROP "Default Drops" packet from LanWan, proto:2, len:28, ip:192.168.0.1 -> 239.255.255.246, plen:8
[16:05:09] DROP "Default Drops" packet from LanWan, proto:2, len:28, ip:192.168.0.1 -> 224.0.0.1, plen:8
[16:05:09] DROP "Default Drops" packet from LanWan, proto:2, len:32, ip:192.168.0.86 -> 224.0.0.251, plen:8
[16:05:10] DROP "Default Drops" packet from LanWan, proto:2, len:32, ip:192.168.0.41 -> 224.0.0.252, plen:8
[16:05:10] DROP "Default Drops" packet from LanWan, proto:2, len:32, ip:192.168.0.1 -> 224.0.0.2, plen:8
[16:05:10] DROP "Default Drops" packet from LanWan, proto:2, len:32, ip:192.168.0.1 -> 228.8.8.8, plen:8
[16:05:40] DROP "Default Drops" packet from LanWan, proto:2, len:28, ip:192.168.0.1 -> 239.192.152.143, plen:8
[16:06:03] DROP "Default Drops" packet from LanWan, proto:2, len:28, ip:192.168.0.1 -> 224.1.14.71, plen:8
[16:06:09] DROP "Default Drops" packet from LanWan, proto:2, len:28, ip:192.168.0.1 -> 224.0.0.1, plen:8
[16:06:09] DROP "Default Drops" packet from LanWan, proto:2, len:32, ip:192.168.0.1 -> 228.8.8.8, plen:8
[16:06:10] DROP "Default Drops" packet from LanWan, proto:2, len:32, ip:192.168.0.86 -> 224.0.0.251, plen:8
[16:06:10] DROP "Default Drops" packet from LanWan, proto:2, len:32, ip:192.168.0.41 -> 224.0.0.252, plen:8
[16:06:10] DROP "Default Drops" packet from LanWan, proto:2, len:32, ip:192.168.0.41 -> 239.255.255.250, plen:8
[16:06:10] DROP "Default Drops" packet from LanWan, proto:2, len:32, ip:192.168.0.1 -> 224.0.0.2, plen:8
[16:06:22] DROP "Default Drops" packet from LanWan, proto:2, len:28, ip:192.168.0.1 -> 239.255.255.246, plen:8
[16:06:56] DROP "Default Drops" packet from LanWan, proto:2, len:28, ip:192.168.0.1 -> 239.192.152.143, plen:8
[16:07:09] DROP "Default Drops" packet from LanWan, proto:2, len:28, ip:192.168.0.1 -> 224.0.0.1, plen:8
[16:07:10] DROP "Default Drops" packet from LanWan, proto:2, len:32, ip:192.168.0.41 -> 224.0.0.252, plen:8
[16:07:10] DROP "Default Drops" packet from LanWan, proto:2, len:32, ip:192.168.0.41 -> 224.0.0.251, plen:8
[16:07:10] DROP "Default Drops" packet from LanWan, proto:2, len:32, ip:192.168.0.86 -> 224.0.0.251, plen:8
[16:07:10] DROP "Default Drops" packet from LanWan, proto:2, len:32, ip:192.168.0.1 -> 228.8.8.8, plen:8
[16:07:10] DROP "Default Drops" packet from LanWan, proto:2, len:32, ip:192.168.0.1 -> 224.0.0.2, plen:8
[16:07:12] DROP "Default Drops" packet from LanWan, proto:2, len:28, ip:192.168.0.1 -> 239.194.75.48, plen:8
[16:07:37] DROP "Default Drops" packet from LanWan, proto:2, len:28, ip:192.168.0.1 -> 239.255.255.246, plen:8
[16:08:08] DROP "Default Drops" packet from LanWan, proto:2, len:28, ip:192.168.0.1 -> 224.1.14.71, plen:8
[16:08:08] DROP "Default Drops" packet from LanWan, proto:2, len:28, ip:192.168.0.1 -> 224.0.0.1, plen:8
[16:08:09] DROP "Default Drops" packet from LanWan, proto:2, len:32, ip:192.168.0.41 -> 224.0.0.252, plen:8
[16:08:09] DROP "Default Drops" packet from LanWan, proto:2, len:32, ip:192.168.0.41 -> 239.255.255.250, plen:8
[16:08:09] DROP "Default Drops" packet from LanWan, proto:2, len:32, ip:192.168.0.1 -> 228.8.8.8, plen:8
[16:08:09] DROP "Default Drops" packet from LanWan, proto:2, len:32, ip:192.168.0.1 -> 224.0.0.2, plen:8
[16:08:10] DROP "Default Drops" packet from LanWan, proto:2, len:28, ip:192.168.0.1 -> 224.1.14.71, plen:8
[16:08:11] DROP "Default Drops" packet from LanWan, proto:2, len:28, ip:192.168.0.1 -> 224.1.14.71, plen:8
[16:08:11] DROP "Default Drops" packet from LanWan, proto:2, len:28, ip:192.168.0.1 -> 239.192.152.143, plen:8
[16:08:12] DROP "Default Drops" packet from LanWan, proto:2, len:28, ip:192.168.0.1 -> 224.1.14.71, plen:8
[16:08:13] DROP "Default Drops" packet from LanWan, proto:2, len:28, ip:192.168.0.1 -> 224.1.14.71, plen:8
[16:08:14] DROP "Default Drops" packet from LanWan, proto:2, len:28, ip:192.168.0.1 -> 224.1.14.71, plen:8
[16:08:27] DROP "Default Drops" packet from LanWan, proto:2, len:28, ip:192.168.0.1 -> 239.194.75.48, plen:8
[16:08:52] DROP "Default Drops" packet from LanWan, proto:2, len:28, ip:192.168.0.1 -> 239.255.255.246, plen:8
[16:09:08] DROP "Default Drops" packet from LanWan, proto:2, len:28, ip:192.168.0.1 -> 224.0.0.1, plen:8
[16:09:09] DROP "Default Drops" packet from LanWan, proto:2, len:32, ip:192.168.0.41 -> 224.0.0.252, plen:8
[16:09:09] DROP "Default Drops" packet from LanWan, proto:2, len:32, ip:192.168.0.41 -> 239.255.255.250, plen:8
[16:09:09] DROP "Default Drops" packet from LanWan, proto:2, len:32, ip:192.168.0.41 -> 224.0.0.251, plen:8
[16:09:09] DROP "Default Drops" packet from LanWan, proto:2, len:32, ip:192.168.0.1 -> 228.8.8.8, plen:8
[16:09:09] DROP "Default Drops" packet from LanWan, proto:2, len:32, ip:192.168.0.1 -> 224.0.0.2, plen:8
[16:09:42] DROP "Default Drops" packet from LanWan, proto:2, len:28, ip:192.168.0.1 -> 239.194.75.48, plen:8
[16:10:09] DROP "Default Drops" packet from LanWan, proto:2, len:28, ip:192.168.0.1 -> 224.0.0.1, plen:8
[16:10:10] DROP "Default Drops" packet from LanWan, proto:2, len:32, ip:192.168.0.41 -> 224.0.0.252, plen:8
[16:10:10] DROP "Default Drops" packet from LanWan, proto:2, len:32, ip:192.168.0.41 -> 239.255.255.250, plen:8
[16:10:10] DROP "Default Drops" packet from LanWan, proto:2, len:32, ip:192.168.0.41 -> 224.0.0.251, plen:8
[16:10:10] DROP "Default Drops" packet from LanWan, proto:2, len:32, ip:192.168.0.1 -> 224.0.0.2, plen:8
[16:10:10] DROP "Default Drops" packet from LanWan, proto:2, len:32, ip:192.168.0.1 -> 228.8.8.8, plen:8
[16:10:26] DROP "Default Drops" packet from LanWan, proto:2, len:28, ip:192.168.0.1 -> 239.192.152.143, plen:8
[16:10:32] DROP "Default Drops" packet from LanWan, proto:UDP, len:267, ip/port:192.168.0.86:5353 -> 224.0.0.251:5353, udplen:239