deny or reject port 137

Top Page
Attachments:
Message as email
+ (text/plain)
Delete this message
Reply to this message
Author: Bart Garst
Date:  
Subject: deny or reject port 137
On Thu, 2003-10-09 at 13:04, Jim wrote:
> On a linux machine that has two network cards that is running a firewall
> script created by fwbuilder can having it deny traffic on certain ports
> such as 137 actually increase network traffic since those machines will
> be waiting for a rejection notice? I have have setup a firewall on a
> Debian box and used deny and I am seeing a lot of 137 traffic I tried to
> set it to reject and still saw a lot of 137 traffic the machines are
> patched for welchia and blaster, any ideas?
>


I'm DENYing connections to port 137 from my Internet interface. I'm not
logging these denials though.

How are you checking (which tool) the amount of traffic flow associated
with this port?

Bart