portsentry only blocking once - need to restart
I have the following problem:
Wenn I do a nmap to a portsentry protected host
I will be blocked after 3 scans with the following command:
KILL_RUN_CMD="/sbin/iptables -I INPUT -s $TARGET$ -j DROP"
When I flush iptables (iptables -F) and try to nmap
the host again portsentry does not block it again.
I have to do a "/etc/init.d/portsentry restart" to get
blocked again!
A bug or a feature?
#####
portsentry:
Installed: 1.2-6
Candidate: 1.2-6
Version Table:
*** 1.2-6 0
500 http://ftp-stud.fht-esslingen.de sarge/main Packages
500 http://ftp.de.debian.org sarge/main Packages
100 /var/lib/dpkg/status
--
Jochen Kaechelin || www.gissmoh.de
Reply to: