From owner-FreeBSD-net-jp@jp.freebsd.org  Wed May 19 15:12:13 1999
Received: (from daemon@localhost)
	by castle.jp.freebsd.org (8.9.3+3.2W/8.7.3) id PAA75666;
	Wed, 19 May 1999 15:12:13 +0900 (JST)
	(envelope-from owner-FreeBSD-net-jp@jp.FreeBSD.org)
Received: from yaya.forks.co.jp (51.96.149.210.economy.2iij.net [210.149.96.51])
	by castle.jp.freebsd.org (8.9.3+3.2W/8.7.3) with ESMTP id PAA75660
	for <FreeBSD-net-jp@jp.freebsd.org>; Wed, 19 May 1999 15:12:12 +0900 (JST)
	(envelope-from marina@yaya.forks.co.jp)
Received: by yaya.forks.co.jp (8.9.1a/3.7W-2.8compat.base) id PAA19236; Wed, 19 May 1999 15:12:06 +0900 (JST)
Date: Wed, 19 May 1999 15:12:06 +0900
From: marina <marina@yaya.forks.co.jp>
To: FreeBSD-net-jp@jp.freebsd.org
Message-Id: <37425636192.5EF5MARINA@yaya.forks.co.jp>
MIME-Version: 1.0
Content-Type: text/plain; charset=ISO-2022-JP
Content-Transfer-Encoding: 7bit
X-Mailer: Becky! ver 1.25.03
Reply-To: FreeBSD-net-jp@jp.freebsd.org
Precedence: list
X-Distribute: distribute version 2.1 (Alpha) patchlevel 24e+990430
X-Sequence: FreeBSD-net-jp 1571
Subject: [FreeBSD-net-jp 1571] [Q]:DNS =?ISO-2022-JP?B?GyRCJTUhPBsoQg==?=
 =?ISO-2022-JP?B?GyRCJVAlIiU/JUMlLyEpJEskRCQkJEYbKEI=?= 
Errors-To: owner-FreeBSD-net-jp@jp.freebsd.org
Sender: owner-FreeBSD-net-jp@jp.freebsd.org
X-Originator: marina@yaya.forks.co.jp

$BIp@P$G$9!#(B

HTTPD$B$N%5!<%P$N%;%-%e%j%F%#8~>e$r$H;W$$(B
sysctl -w net.inet.tcp.log_in_vain=1
sysctl -w net.inet.udp.log_in_vain=1
$B$r$*$3$J$C$F!"%"%?%C%/$r4F;k$7$h$&$H;W$C$?$N$G$9$,(B

> Connection attempt to UDP 172.16.0.50:53 from 210.170.153.90:3029
> Connection attempt to UDP 172.16.0.50:53 from 210.170.153.90:3029
> Connection attempt to UDP 172.16.0.50:53 from 210.170.153.90:3029
> Connection attempt to UDP 172.16.0.50:53 from 210.170.153.90:3029
> Connection attempt to UDP 172.16.0.50:4820 from 172.16.0.1:53
> Connection attempt to UDP 172.16.0.50:4823 from 172.16.0.1:53
> Connection attempt to UDP 172.16.0.50:4833 from 172.16.0.1:53
> Connection attempt to UDP 172.16.0.50:4835 from 172.16.0.1:53
> /www: optimization changed from SPACE to TIME
> Connection attempt to UDP 172.16.0.50:4862 from 172.16.0.1:53
> Connection attempt to UDP 172.16.0.50:4873 from 172.16.0.1:53
> Connection attempt to TCP 172.16.0.50:1060 from 207.211.106.40:80
> Connection attempt to TCP 172.16.0.50:1064 from 207.211.106.40:80
> Connection attempt to UDP 172.16.0.50:4885 from 172.16.0.1:53
> Connection attempt to TCP 172.16.0.50:1097 from 209.1.224.13:80
> Connection attempt to TCP 172.16.0.50:1099 from 207.211.106.40:80
> Connection attempt to TCP 172.16.0.50:1128 from 207.211.106.40:80
> Connection attempt to TCP 172.16.0.50:1143 from 207.211.106.40:80
> Connection attempt to TCP 172.16.0.50:1144 from 209.1.224.18:80
> Connection attempt to TCP 172.16.0.50:1145 from 207.211.106.40:80
> Connection attempt to TCP 172.16.0.50:1146 from 207.211.106.40:80
> Connection attempt to TCP 172.16.0.50:1150 from 207.211.106.40:80
> Connection attempt to TCP 172.16.0.50:1164 from 209.1.224.14:80
> Connection attempt to TCP 172.16.0.50:1174 from 207.211.106.40:80
> Connection attempt to TCP 172.16.0.50:1180 from 207.211.106.40:80
> Connection attempt to TCP 172.16.0.50:1184 from 207.211.106.40:80
> Connection attempt to TCP 172.16.0.50:1188 from 207.211.106.40:80
> Connection attempt to TCP 172.16.0.50:1192 from 207.211.106.40:80
> Connection attempt to UDP 172.16.0.50:4891 from 172.16.0.1:53
> Connection attempt to TCP 172.16.0.50:1230 from 216.33.20.4:80
> Connection attempt to TCP 172.16.0.50:1239 from 207.211.106.40:80
> Connection attempt to TCP 172.16.0.50:1241 from 207.211.106.40:80
> Connection attempt to UDP 172.16.0.50:4900 from 172.16.0.1:53
> Connection attempt to UDP 172.16.0.50:4906 from 172.16.0.1:53
> Connection attempt to UDP 172.16.0.50:4915 from 172.16.0.1:53
> Connection attempt to UDP 172.16.0.50:4925 from 172.16.0.1:53
> Connection attempt to UDP 172.16.0.50:4935 from 172.16.0.1:53
> Connection attempt to UDP 172.16.0.50:4951 from 172.16.0.1:53
> Connection attempt to UDP 172.16.0.50:4955 from 172.16.0.1:53
> Connection attempt to UDP 172.16.0.50:4969 from 172.16.0.1:53
> Connection attempt to UDP 172.16.0.50:4971 from 172.16.0.1:53
> Connection attempt to UDP 172.16.0.50:4972 from 172.16.0.1:53
> Connection attempt to UDP 172.16.0.50:4973 from 172.16.0.1:53
> Connection attempt to UDP 172.16.0.50:4984 from 172.16.0.1:53
> Connection attempt to UDP 172.16.0.50:4992 from 172.16.0.1:53
> Connection attempt to UDP 172.16.0.50:1030 from 172.16.0.1:53
> Connection attempt to UDP 172.16.0.50:1043 from 172.16.0.1:53
> Connection attempt to UDP 172.16.0.50:1054 from 172.16.0.1:53
> Connection attempt to UDP 172.16.0.50:1109 from 172.16.0.1:53
> Connection attempt to UDP 172.16.0.50:1139 from 172.16.0.1:53
> Connection attempt to UDP 172.16.0.50:1152 from 172.16.0.1:53
> Connection attempt to UDP 172.16.0.50:1166 from 172.16.0.1:53
> Connection attempt to UDP 172.16.0.50:1168 from 172.16.0.1:53
> Connection attempt to UDP 172.16.0.50:1180 from 172.16.0.1:53
> Connection attempt to UDP 172.16.0.50:1191 from 172.16.0.1:53
> Connection attempt to UDP 172.16.0.50:1221 from 172.16.0.1:53
> Connection attempt to UDP 172.16.0.50:1224 from 172.16.0.1:53
> Connection attempt to UDP 172.16.0.50:1263 from 172.16.0.1:53
> Connection attempt to TCP 172.16.0.50:113 from 203.141.89.70:1118
> Connection attempt to TCP 172.16.0.50:113 from 203.141.89.70:1118
> Connection attempt to TCP 172.16.0.50:113 from 203.141.89.70:1135
> Connection attempt to TCP 172.16.0.50:113 from 203.141.89.70:1144
> Connection attempt to UDP 172.16.0.50:1298 from 172.16.0.1:53
> Connection attempt to UDP 172.16.0.50:1302 from 172.16.0.1:53
> Connection attempt to UDP 172.16.0.50:1329 from 172.16.0.1:53
> Connection attempt to UDP 172.16.0.50:1335 from 172.16.0.1:53
> Connection attempt to UDP 172.16.0.50:1337 from 172.16.0.1:53
> Connection attempt to UDP 172.16.0.50:1350 from 172.16.0.1:53
> Connection attempt to UDP 172.16.0.50:1355 from 172.16.0.1:53
> Connection attempt to UDP 172.16.0.50:1373 from 172.16.0.1:53
> Connection attempt to UDP 172.16.0.50:1400 from 172.16.0.1:53
> Connection attempt to TCP 172.16.0.50:4720 from 210.162.2.4:80
> Connection attempt to TCP 172.16.0.50:4721 from 210.162.2.4:80
> Connection attempt to UDP 172.16.0.50:1421 from 172.16.0.1:53
> Connection attempt to TCP 172.16.0.50:1237 from 207.46.131.13:80
> Connection attempt to UDP 172.16.0.50:1423 from 172.16.0.1:53
> Connection attempt to UDP 172.16.0.50:1442 from 172.16.0.1:53
> Connection attempt to UDP 172.16.0.50:1462 from 172.16.0.1:53
> Connection attempt to UDP 172.16.0.50:1464 from 172.16.0.1:53
> Connection attempt to UDP 172.16.0.50:1474 from 172.16.0.1:53
> Connection attempt to UDP 172.16.0.50:1488 from 172.16.0.1:53
> Connection attempt to UDP 172.16.0.50:1510 from 172.16.0.1:53
> Connection attempt to UDP 172.16.0.50:1539 from 172.16.0.1:53
> Connection attempt to UDP 172.16.0.50:1550 from 172.16.0.1:53
> Connection attempt to UDP 172.16.0.50:1551 from 172.16.0.1:53
> Connection attempt to UDP 172.16.0.50:1569 from 172.16.0.1:53
> Connection attempt to UDP 172.16.0.50:1573 from 172.16.0.1:53

$B%0%m!<%P%k$J%"%I%l%9$+$i$N%j%/%(%9%H$OJLESD4$Y$k$H$7$F!"5?Ld$J$N$O(B
$B%m!<%+%k$J(BDNS$B%^%7%s$+$i$N%j%/%(%9%H$G$9!#(B
53$BHV$C$F$3$H$O!"(BDNS$B$+$i$@$H;W$&$s$G$9!J!)!K$,(B
DNS$B$K5-=R$7$F$"$k%^%7%s$KBP$7$F@8$-$F$$$k$+!"3NG'$7$F$k$s$G$7$g$&$+!)(B

172.16.0.50 $B$O(B FreeBSD 2.2.8R + apache 1.3.3 + squid 2.0 $B$G(BHTTPD$B%5!<%P(B
172.16.0.1 $B$O(B FreeBSD 2.2.5R $B$G%m!<%+%k$J(BDNS,NTP$B%5!<%P$r(B
$B9T$C$F$$$^$9!#(Bnamed, xntpd $B$O(B 2.2.5R $BIUB0$N$b$N$r;H$C$F$^$9!#(B

172.16.0.1 $B$N(B ps -ax $B$O(B $B0J2<$NDL$j$G$9!#(B
  PID  TT  STAT      TIME COMMAND
    0  ??  DLs    0:04.42  (swapper)
    1  ??  Is     0:00.14 /sbin/init --
    2  ??  DL     0:00.20  (pagedaemon)
    3  ??  DL     0:00.00  (vmdaemon)
    4  ??  DL    15:44.22  (update)
   27  ??  Is     0:00.01 adjkerntz -i
   77  ??  Ss     0:34.13 syslogd
   82  ??  Is     2:25.37 named -b /etc/namedb/named.boot
   88  ??  S<s   10:58.62 xntpd
  111  ??  Is     0:00.36 inetd
  114  ??  Is     1:30.90 cron
  118  ??  Is     0:14.06 sendmail: accepting connections on port 25 (sendmail)
 6134  ??  Ss     0:00.33 telnetd
 6135  p1  Is     0:00.42 -bash (bash)
 6143  p1  S      0:00.32 bash
 6147  p1  R+     0:00.01 ps -ax
  161  v0  Is+    0:00.07 /usr/libexec/getty Pc ttyv0

/sbin /usr/sbin $B$rJL%^%7%s$G(Bcmp$B$7$^$7$?$,!"F1$8$h$&$G$9!#(B
$BLZGO$G$bF~$C$F$7$^$C$?$N$G$7$g$&$+!)(B
$B$I$J$?$+!"$4B8CN$G$"$l$P!"65$($F$/$@$5$$!#(B
$B$*4j$$$7$^$9!#(B
-----------------------------------------------------
Masanori Takeishi,  E-Mail: marina@yaya.forks.co.jp
