1. You are viewing our forum as a guest. For full access please Register. WindowsBBS.com is completely free, paid for by advertisers and donations.

dNS And port scan

Discussion in 'Networking (Hardware & Software)' started by Sue, 2003/02/19.

Thread Status:
Not open for further replies.
  1. 2003/02/19
    Sue

    Sue Inactive Thread Starter

    Joined:
    2002/04/12
    Messages:
    284
    Likes Received:
    0
    Running ISA on a Windows 2000 advanced server
    DNS, active directory and dhcp on Windows 2000 advanced server
    I have 13 servers on DNS

    The ISA firewall is showing an error in event view that I am having an all port scan from an IP address that is my ISP.

    My ISP claims that my ISA server is not correctly reading the error
    that they are not actually port scanning me. They say because I have a dns server I am causing the error.

    I had a third party come in with an analyser, they said it is my ISP.

    Can an ISA incorrectly report an all port scan?
     
    Sue,
    #1
  2. 2003/02/19
    unixfan

    unixfan Inactive

    Joined:
    2002/01/26
    Messages:
    282
    Likes Received:
    0
    Yes, possibly. If the scans appear to be originating from your ISP's DNS servers, you are probably using DNS forwarders with recursion turned on.

    Is VPN/RRAS configured on the server?
     

  3. to hide this advert.

  4. 2003/02/20
    Sue

    Sue Inactive Thread Starter

    Joined:
    2002/04/12
    Messages:
    284
    Likes Received:
    0
    Is there a way to tell if recursion is turned on?

    I do not use VPN.
     
    Sue,
    #3
  5. 2003/02/20
    Sue

    Sue Inactive Thread Starter

    Joined:
    2002/04/12
    Messages:
    284
    Likes Received:
    0
    I found the check box, disable recursion and checked it. I am still getting the port scan.

    any other ideas?
     
    Sue,
    #4
  6. 2003/02/20
    unixfan

    unixfan Inactive

    Joined:
    2002/01/26
    Messages:
    282
    Likes Received:
    0
    Test with root hints not forwarders.
     
  7. 2003/02/20
    Sue

    Sue Inactive Thread Starter

    Joined:
    2002/04/12
    Messages:
    284
    Likes Received:
    0
    I checked out the root hints and they match the cache.dns file.

    What do you mean by test the root hints?
     
    Sue,
    #6
Thread Status:
Not open for further replies.

Share This Page

  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.