  Cisco_Guy_1
@66.162.x.x
| reply to dwhayden Re: [News] Insight Columbus e-mails about running
I got my e-mail today about a network scan and the services I was running. I searched my logs and found that they scanned me 2 days ago from a host in the 12.220.185.0/24 range.
I don't communicate with anyone on the insightbb network, so I just added an entry to my firewall ( PIX 501 ) to deny all Ip traffic from the insight address space. ( not just the /24 that scanned me ) do some digging on ARIN for the complete set of ranges they get from ATT
I also turned on detail logging to a syslog file for easier tracking. Just in case they decide to scan from a peer.
I used to work with the insight network people in a business relationship and to say that they are "challenged technically" is an understatement. It should be fairly easy to stay ahead of the game as long as you don't mind working a little. |
|
  qos1
join:2003-09-19 Beverly Hills, CA 1 edit | EDIT: oops |
|