[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
spoofed mail
Hi misc@
Lately I've recived spam-complaints on our 'abuse@' on ip-addresses
from within one of our ranges/allocations (an old deprecating /20)
The 'funny' part is that these ip-addresses are not in use i.e. don't
have a nic attached to it.
We have all the serveres in a large datacenter (my "domain") where I
use obsd for a lot of tasks. One of these tasks is a obsd-watchdog-box
on each networksegment (switched network) running a small piece of c
code to detect hosts going into promiscuous mode and ettercap+ethereal
for network analyzies. Don't have any pf between the gateway and the
customers servers, hence the approach with the watchdogs.
The problem is that I can't find the shit-head[s] doing it!
Any help is appreciated. Thank you.
respectfully
/per
per@xterm.dk
[demime 0.98d removed an attachment of type application/octet-stream]