Author: Bart Garst Date: Subject: deny or reject port 137
On Thu, 2003-10-09 at 13:04, Jim wrote: > On a linux machine that has two network cards that is running a firewall
> script created by fwbuilder can having it deny traffic on certain ports
> such as 137 actually increase network traffic since those machines will
> be waiting for a rejection notice? I have have setup a firewall on a
> Debian box and used deny and I am seeing a lot of 137 traffic I tried to
> set it to reject and still saw a lot of 137 traffic the machines are
> patched for welchia and blaster, any ideas?
>
I'm DENYing connections to port 137 from my Internet interface. I'm not
logging these denials though.
How are you checking (which tool) the amount of traffic flow associated
with this port?