Subject: Re: Flood ping directed at a NetBSD box == loads of DNS requests
To: Chris Tribo <firstname.lastname@example.org>
From: Manuel Bouyer <email@example.com>
Date: 07/16/2002 19:23:20
On Mon, Jul 15, 2002 at 07:30:02PM -0400, Chris Tribo wrote:
> On Sun, 14 Jul 2002, Matthias Scheler wrote:
> > In article <Pine.D-G.firstname.lastname@example.org>,
> > Chris Tribo <email@example.com> writes:
> > > I have ipf running, looking at ipfstat -t. Now I flood ping my box
> > > from another machine and I see screen fulls of outgoing DNS requests.
> > Are you running "ipmon"? If you do and you want to avoid this don't
> > invoke it with the option "-n".
> I am simply running the standard /etc/rc.d/ipmon script at
> startup. Which states: command_args="-D" (start as daemon)
> I'm pulling down a source tree now to see if it's compiled with a
> similar option to -n. There doesn't appear to be a way to override a
> compile time setting for this on the command line.
ipmon is started with -sn (from /etc/defaults/rc.conf). You can override this
Manuel Bouyer <firstname.lastname@example.org>