Hello all
I am currently getting application warnings in event viewer;
“ISA Server detected an all port scan attack from Internet Protocol (IP) address 194.168.4.100. For more information about this event, see ISA Server Help. “
As well as DNS warnings;
“The DNS server encountered an invalid domain name in a packet from 81.144.183.3. The packet is rejected. “
I’m not overly concerned as I know that this is just someone taking pot shots. The question is, can I do anything to find out where this is coming from? I know that I can block specific ip’s, but I would expect that who ever this is would be spoofing.
Thanks in advance
I am currently getting application warnings in event viewer;
“ISA Server detected an all port scan attack from Internet Protocol (IP) address 194.168.4.100. For more information about this event, see ISA Server Help. “
As well as DNS warnings;
“The DNS server encountered an invalid domain name in a packet from 81.144.183.3. The packet is rejected. “
I’m not overly concerned as I know that this is just someone taking pot shots. The question is, can I do anything to find out where this is coming from? I know that I can block specific ip’s, but I would expect that who ever this is would be spoofing.
Thanks in advance