1
Intrusion Detection and Prevention / Re: Security breach? Netscan *:222 via OPNsense
« on: April 26, 2018, 02:47:35 pm »
Hi Franco,
Thanks for your reply.
I have made a block-rule that writes to the log. I have not gotten anything in the log. So i can't track it yet.
I don't think i is from one of the machines on the "LAN" network. There is only 3 as described i my first post. I have no VPN to the router.
What i though is that the firewall went into an unwanted state where it does a call back of some sort. It look like it is doing SSH to a fixed list of servers. But i really don't know.
But now the router is updated so it will probably not happen again.
Best Regards
Thanks for your reply.
I have made a block-rule that writes to the log. I have not gotten anything in the log. So i can't track it yet.
I don't think i is from one of the machines on the "LAN" network. There is only 3 as described i my first post. I have no VPN to the router.
What i though is that the firewall went into an unwanted state where it does a call back of some sort. It look like it is doing SSH to a fixed list of servers. But i really don't know.
But now the router is updated so it will probably not happen again.
Best Regards