[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
Re: [cobalt-users] [cobalt-users]scanned from 211.96.149.35 with SSH-1.0-SSH_Version_Mapper
- Subject: Re: [cobalt-users] [cobalt-users]scanned from 211.96.149.35 with SSH-1.0-SSH_Version_Mapper
- From: Jay Summers <jay@xxxxxxxxxxxxxxxxxxxxx>
- Date: Thu Jan 3 08:01:01 2002
- List-id: Mailing list for users to share thoughts on Cobalt products. <cobalt-users.list.cobalt.com>
> .Anybody get any of these?
>
> Jan 2 19:56:04 fsn1 sshd[9692]: scanned from 211.96.149.35 with
> SSH-1.0-SSH_Version_Mapper. Don't panic.
> Jan 2 19:56:04 fsn1 sshd[9689]: Did not receive identification string from
> 211.96.149.35
Not from that address. I think I've added most of the Asia Pacific Network
to my /etc/hosts.deny file. I did get something similar today, see below.
Jan 3 03:11:57 ns1 sshd[29437]: Did not receive identification string from
212.30.9.220
Jan 3 03:11:57 ns1 sshd[29445]: scanned from 212.30.9.220 with
SSH-1.0-SSH_Version_Mapper. Don't panic.
My Colo was running this accross all the machines on their network a while
back when they discovered that OpenSSH 3.0.1 and below had a vulnerability.
I thought that was kind of nice of them. It's probably a good way to drum up
upgrade business also.
cya,
j
--
http://www.bizmanuals.com