[plug] smtp madness.

Peter F Bradshaw pfb at exadios.com
Tue Jun 22 15:55:13 WST 2004


Hi;

On Tue, 22 Jun 2004, Martin wrote:

> $quoted_author = "Shayne O'Neill" ;
> >
> > The problem of course is that if this is the case then the ip block wont
> > work.
> >
> > tcp        0      1 yourguild.murdoch.:2825 yhaaus.lnk.telstra:auth
> > SYN_SENT
> > tcp        0      0 yourguild.murdoch.:smtp yhaaus.lnk.telstra:8342
> > ESTABLISHED
> > tcp        0      0 yourguild.murdoch.:smtp yhaaus.lnk.telstra:8314
> > TIME_WAIT
>
> i imagine the reverse dns is yhaaus.lnk.telstra.net but if you run
> netstat with the -n flag it will give you IP address.

Possibly:

host  yhaaus.lnk.telstra.net
yhaaus.lnk.telstra.net has address 165.228.11.250

The IP comes from the class B 165.228.0.0 - 165.228.255.255. Try
blocking the whole class B (probably dynamically allocated) with your
iptables / ipchains.

>
> marty
>
>

Cheers

-- 
Peter F Bradshaw, pfb at exadios.com, ICQ 75431157 (exadios).
http://www.exadios.com
PGP public key at http://www.exadios.com/public_key.html
"I love truth, and the way the government still uses it occasionally to
 keep us guessing.  " - Sam Kekovich.



More information about the plug mailing list