Can somebody explain what the following firewall alerts mean and should I be concerned and what to do about them? I want to learn how to monitor firewalls thanks…
05/22/2002 10:08:22.256 – Probable TCP FIN scan – Source:209.216.24.67, 80, WAN – Destination:xx.xx.xx.xx, 14552, LAN – –
05/22/2002 07:25:30.736 – Probable TCP NULL scan Source:159.37.7.65, 443, WAN – Destination:xx.xx.xx.xx, 6904, WAN – –
05/16/2002 11:08:36.096 – ICMP packet dropped – Source:216.151.111.83, 8,WAN – Destination:xx.xx.xx.xx, 8, WAN – ‘Ping’ –
05/16/2002 12:02:56.480 – Sub Seven Attack Dropped – Source:66.188.223.57, 2581, WAN – Destination:xx.xx.xx.xx, 27374, WAN – –
Thanks for sharing your knowledge and getting me smarter…