Hi. I have a RH 7.0 firewall that does 3 simple things using ipchains and ipmasqadm. It forwards email to our exhcange server on the private lan, and it acts as a gateway between the private lan and the internet. It also runs squid for proxy.
I have been notified by a couple companies that we are port-scanning their network. Of course I am not intentionally doing this. But I am a linux newbie and was wondering if the linux server is doing something I don't want it to by default.
I have disabled all incoming ports such as ftp and telnet so that the machine cannot be comprimised at all from the internet.
Is their any process that could be running that other companies may mistaken to be some sort of portscan? Any suggestions?
Thanks, Joe.
I have been notified by a couple companies that we are port-scanning their network. Of course I am not intentionally doing this. But I am a linux newbie and was wondering if the linux server is doing something I don't want it to by default.
I have disabled all incoming ports such as ftp and telnet so that the machine cannot be comprimised at all from the internet.
Is their any process that could be running that other companies may mistaken to be some sort of portscan? Any suggestions?
Thanks, Joe.