Altair Technologies - "sample" firewall log analysis for
06/10/2002 00:00:00 to 06/10/2002 23:59:59

Summary
ProcessEventsDuration
(in minutes)
Sent
(in MB)
Rcvd
(in MB)
Types
ProcessedReportedInfoNoticeWarningErrorAlertCriticalEmergency
cifsd330003      
dnsd116116000116      
eaglelogd220002      
ftpd440034      
gwcontrol1,0271,027000 1,024  3  
httpd749749271491,390674174    
kernel609609000 12597    
nbdgramd196196700196      
notifyd22000  1  1 
pingd2852853061919284 1    
readhawk77031,1134 1 2  
smtp3131324371963 3  
tcp-gsp11000  1    
tcpap-gsp28281002 1313   
udp-gsp885885301515833 52    
vultured11000   1   
Totals3,9463,9463744292,5472,1371,04374314810
Filtered0 

Research links

CIFSD - Back to top
No.TypeStartEndCountMessage
112106/10/02 09:24:1806/10/02 09:24:403Statistics: duration=nnn id=nnn src=192.168.0.231/pppp proto=cifs (Disconnected prematurely)


DNSD - Back to top
No.TypeStartEndCountMessage
112006/10/02 00:22:5506/10/02 23:52:3115dnsd Info: Failed to handle request from 127.0.0.1 for DomainName for 10.102.17.172.in-addr.arpa. - no progress possible (198.41.0.11/No response, 128.9.64.26/No response, 198.32.1.116/No response)
212006/10/02 00:13:3006/10/02 23:59:4614dnsd Info: Failed to handle request from 127.0.0.1 for DomainName for 142.0.42.10.in-addr.arpa. - no progress possible (128.9.64.26/No response, 198.32.1.116/No response)
312006/10/02 00:12:4906/10/02 03:39:499dnsd Info: Failed to handle request from 127.0.0.1 for DomainName for 10.102.17.172.in-addr.arpa. - no progress possible (198.41.0.11/No response, 198.32.1.116/No response, 128.9.64.26/No response)
412006/10/02 03:36:0406/10/02 23:42:536dnsd Info: Failed to handle request from 172.32.10.11 for StartOfAuthority for 102.17.172.in-addr.arpa. - no progress possible (198.41.0.11/No response, 128.9.64.26/No response, 198.32.1.116/No response)
512006/10/02 19:45:3906/10/02 20:24:386dnsd Info: Failed to handle request from 127.0.0.1 for DomainName for 12.102.17.172.in-addr.arpa. - no progress possible (198.41.0.11/No response, 128.9.64.26/No response, 198.32.1.116/No response)
612006/10/02 00:58:3206/10/02 03:43:416dnsd Info: Failed to handle request from 127.0.0.1 for DomainName for 142.0.42.10.in-addr.arpa. - no progress possible (198.32.1.116/No response, 128.9.64.26/No response)
712006/10/02 00:11:0306/10/02 03:14:014dnsd Info: Failed to handle request from 192.168.0.156 for DomainName for 40.10.18.172.in-addr.arpa. - no progress possible (198.32.1.116/No response, 128.9.64.26/No response)
812006/10/02 00:33:0706/10/02 23:28:124dnsd Info: Failed to handle request from 172.32.10.21 for DomainName for 71.10.18.172.in-addr.arpa. - no progress possible (128.9.64.26/No response, 198.32.1.116/No response)
912006/10/02 00:28:3806/10/02 22:28:434dnsd Info: Failed to handle request from 172.32.10.21 for DomainName for 113.10.18.172.in-addr.arpa. - no progress possible (128.9.64.26/No response, 198.32.1.116/No response)
1012006/10/02 19:46:4206/10/02 21:36:433dnsd Info: Failed to handle request from 172.32.10.21 for DomainName for 198.10.18.172.in-addr.arpa. - no progress possible (128.9.64.26/No response, 198.32.1.116/No response)
1112006/10/02 18:28:1306/10/02 18:28:133dnsd Info: Refusing request from 216.33.87.9 (on interface 34.28.69.34) for Address for . - not authoritative and not recursing for this request
1212006/10/02 01:16:3106/10/02 23:38:383dnsd Info: Failed to handle request from 192.168.0.156 for DomainName for 207.0.42.10.in-addr.arpa. - no progress possible (128.9.64.26/No response, 198.32.1.116/No response)
1312006/10/02 00:12:3106/10/02 03:15:313dnsd Info: Failed to handle request from 192.168.0.156 for DomainName for 128.10.18.172.in-addr.arpa. - no progress possible (198.32.1.116/No response, 128.9.64.26/No response)
1412006/10/02 16:57:4706/10/02 16:57:473dnsd Info: Refusing request from 216.33.87.8 (on interface 34.28.69.34) for Address for . - not authoritative and not recursing for this request
1512006/10/02 00:14:0106/10/02 23:37:053dnsd Info: Failed to handle request from 192.168.0.156 for DomainName for 205.0.42.10.in-addr.arpa. - no progress possible (128.9.64.26/No response, 198.32.1.116/No response)
1612006/10/02 01:35:3806/10/02 03:47:523dnsd Info: Failed to handle request from 127.0.0.1 for DomainName for 11.102.17.172.in-addr.arpa. - no progress possible (198.41.0.11/No response, 198.32.1.116/No response, 128.9.64.26/No response)
1712006/10/02 01:23:3706/10/02 19:43:393dnsd Info: Failed to handle request from 172.32.10.21 for DomainName for 113.10.18.172.in-addr.arpa. - no progress possible (198.32.1.116/No response, 128.9.64.26/No response)
1812006/10/02 00:23:0106/10/02 19:42:052dnsd Info: Failed to handle request from 192.168.0.156 for DomainName for 113.10.18.172.in-addr.arpa. - no progress possible (128.9.64.26/No response, 198.32.1.116/No response)
1912006/10/02 09:30:3106/10/02 09:31:422dnsd Info: Failed to handle request from 127.0.0.1 for DomainName for 2.221.5.209.in-addr.arpa. - no progress possible (ntserver.microsoft.ca./No NS address, ns.sprint-canada.net./Lame)
2012006/10/02 20:40:3906/10/02 23:41:302dnsd Info: Failed to handle request from 127.0.0.1 for DomainName for 11.102.17.172.in-addr.arpa. - no progress possible (198.41.0.11/No response, 128.9.64.26/No response, 198.32.1.116/No response)
2112006/10/02 02:14:4306/10/02 02:14:432dnsd Info: Failed to handle request from 127.0.0.1 for DomainName for 12.102.17.172.in-addr.arpa. - no progress possible (198.41.0.11/No response, 198.32.1.116/No response, 128.9.64.26/No response)
2212006/10/02 00:26:0106/10/02 22:48:052dnsd Info: Failed to handle request from 192.168.0.156 for DomainName for 41.10.18.172.in-addr.arpa. - no progress possible (128.9.64.26/No response, 198.32.1.116/No response)
2312006/10/02 19:30:0606/10/02 20:31:052dnsd Info: Failed to handle request from 192.168.0.156 for DomainName for 40.10.18.172.in-addr.arpa. - no progress possible (128.9.64.26/No response, 198.32.1.116/No response)
2412006/10/02 19:31:3606/10/02 20:32:362dnsd Info: Failed to handle request from 192.168.0.156 for DomainName for 128.10.18.172.in-addr.arpa. - no progress possible (128.9.64.26/No response, 198.32.1.116/No response)
2512006/10/02 01:35:3006/10/02 01:37:162dnsd Info: Failed to handle request from 172.32.10.11 for StartOfAuthority for 102.17.172.in-addr.arpa. - no progress possible (198.41.0.11/No response, 198.32.1.116/No response, 128.9.64.26/No response)
2612006/10/02 01:03:4106/10/02 01:03:411dnsd Info: Failed to handle request from 127.0.0.1 for DomainName for 10.10.18.172.in-addr.arpa. - no progress possible (128.9.64.26/No response, 198.32.1.116/No response)
2712006/10/02 20:42:2106/10/02 20:42:211dnsd Info: Failed to handle request from 172.32.10.11 for StartOfAuthority for 102.17.172.in-addr.arpa. - failsafe timeout expired (198.41.0.11/No response, 128.9.64.26/No response, 198.32.1.116/No response)
2812006/10/02 00:32:4506/10/02 00:32:451dnsd Info: Failed to handle request from 127.0.0.1 for DomainName for 10.102.17.172.in-addr.arpa. - no progress possible (128.9.64.26/No response, 198.32.1.116/No response)
2912006/10/02 01:23:3706/10/02 01:23:371dnsd Info: Failed to handle request from 192.168.0.156 for DomainName for 113.10.18.172.in-addr.arpa. - no progress possible (198.32.1.116/No response, 128.9.64.26/No response)
3012006/10/02 20:42:0506/10/02 20:42:051dnsd Info: Failed to handle request from 127.0.0.1 for DomainName for 12.102.17.172.in-addr.arpa. - failsafe timeout expired (198.41.0.11/No response, 128.9.64.26/No response, 198.32.1.116/No response)
!!!There were 33 messages to be reported but the listing is limited to 30.


EAGLELOGD - Back to top
No.TypeStartEndCountMessage
110806/10/02 00:00:0106/10/02 00:00:011starting new log file. UTC offset is -0500, Year is 2002, Raptor Security Gateway is 6.5, OS is "NT 4.0 (Build 1381: Service Pack 5)", Platform is "Intel x86"
210712/25/02 00:00:0312/25/02 00:00:031closing log file


FTPD - Back to top
No.TypeStartEndCountMessage
112106/10/02 12:35:5806/10/02 12:35:581Statistics: duration=nnn id=nnn rid=187ti rcvd=nnn srcif=Vpn4 src=10.42.0.142/pppp cldst=161.69.2.7/17291 svsrc=64.39.69.34/pppp dst=161.69.2.7/3376 op=LIST arg=/pub/antivirus/datfiles/4.x result="226 Transfer complete." proto=ftp-data
212106/10/02 12:35:5706/10/02 12:35:571Statistics: duration=nnn id=nnn sent=nnn rcvd=nnn srcif=Vpn4 src=10.42.0.142/pppp svsrc=64.39.69.34/pppp dstif=Vpn3 dst=161.69.2.7/21 proto=ftp rule=1
312106/10/02 12:35:5706/10/02 12:35:571Statistics: duration=nnn id=nnn rid=187tf rcvd=nnn srcif=Vpn4 src=10.42.0.142/pppp cldst=161.69.2.7/17597 svsrc=64.39.69.34/pppp dst=161.69.2.7/3364 op=LIST arg=/pub/antivirus/datfiles/4.x result="226 Transfer complete." proto=ftp-data
412106/10/02 12:35:5706/10/02 12:35:571Statistics: duration=nnn id=nnn rid=187tf rcvd=nnn srcif=Vpn4 src=10.42.0.142/pppp cldst=161.69.2.7/15088 svsrc=64.39.69.34/pppp dst=161.69.2.7/3370 op=RETR arg=/pub/antivirus/datfiles/4.x/DELTA.INI result="226 Transfer complete." proto=ftp-data


GWCONTROL - Back to top
No.TypeStartEndCountMessage
120106/10/02 00:00:5706/10/02 23:59:46196nbdgram: access denied for 192.168.0.142 to 199.166.214.133 [default rule] [no rules found]
220106/10/02 00:34:3306/10/02 23:52:468953/udp: access denied for 172.32.10.11 to a.root-servers.net [default rule] [no rules found]
320106/10/02 03:48:1206/10/02 23:52:466553/udp: access denied for 172.32.10.11 to m.root-servers.net [default rule] [no rules found]
420106/10/02 00:34:3906/10/02 23:52:476353/udp: access denied for 172.32.10.11 to d.root-servers.net [default rule] [no rules found]
520106/10/02 00:34:3606/10/02 23:52:476253/udp: access denied for 172.32.10.11 to b.root-servers.net [default rule] [no rules found]
620106/10/02 00:34:3606/10/02 23:52:476053/udp: access denied for 172.32.10.11 to c.root-servers.net [default rule] [no rules found]
720106/10/02 00:36:1706/10/02 19:41:215453/udp: access denied for 172.32.10.12 to blackhole.isi.edu [default rule] [no rules found]
820106/10/02 00:34:3306/10/02 19:39:505353/udp: access denied for 172.32.10.11 to blackhole.isi.edu [default rule] [no rules found]
920106/10/02 01:35:1106/10/02 22:42:164953/udp: access denied for 172.32.10.11 to 192.203.230.10 [default rule] [no rules found]
1020106/10/02 03:48:1206/10/02 23:53:024953/udp: access denied for 172.32.10.11 to k.root-servers.net [default rule] [no rules found]
1120106/10/02 03:48:1206/10/02 19:52:484853/udp: access denied for 172.32.10.11 to f.root-servers.net [default rule] [no rules found]
1220106/10/02 03:48:1206/10/02 19:52:484853/udp: access denied for 172.32.10.11 to rns.arl.mil [default rule] [no rules found]
1320106/10/02 03:48:1206/10/02 19:52:484753/udp: access denied for 172.32.10.11 to j.root-servers.net [default rule] [no rules found]
1420106/10/02 03:48:1206/10/02 19:52:484753/udp: access denied for 172.32.10.11 to i.root-servers.net [default rule] [no rules found]
1520106/10/02 03:48:1206/10/02 19:52:484753/udp: access denied for 172.32.10.11 to G.ROOT-SERVERS.NET [default rule] [no rules found]
1620106/10/02 03:48:1206/10/02 11:52:102653/udp: access denied for 172.32.10.11 to l.root-servers.net [default rule] [no rules found]
1720106/10/02 00:34:3906/10/02 23:41:311853/udp: access denied for 172.32.10.11 to E.ROOT-SERVERS.NET [default rule] [no rules found]
1820106/10/02 04:50:0406/10/02 20:08:062http: access denied for sntc01hpov.exodus.net to samplefw.ffhexodustor.com [default rule] [no rules found]
1950106/10/02 00:10:2406/10/02 00:10:241access from 209.47.167.99 to 172.17.102.10 [rule id 6]: over 5 tries in 1 hour
2020106/10/02 01:45:4806/10/02 01:45:481http: access denied for 62.254.209.4 to samplefw.ffhexodustor.com [default rule] [no rules found]
2150106/10/02 00:10:2406/10/02 00:10:241access from 209.47.167.99 to 172.17.102.10 [rule id 6]: over 1020 tries in 7 days
2250106/10/02 00:10:2406/10/02 00:10:241access from 209.47.167.99 to 172.17.102.10 [rule id 6]: over 367 tries in 1 day


HTTPD - Back to top
No.TypeStartEndCountMessage
112106/10/02 00:00:4806/10/02 23:56:52573Statistics: duration=nnn id=nnn sent=nnn rcvd=nnn srcif=Vpn3 src=34.28.65.8/pppp cldst=34.28.69.36/80 svsrc=34.28.65.8/pppp dstif=Vpn6 dst=172.32.10.10/80 op=GET arg=http://172.32.10.10/ result="200 OK" proto=http rule=2
231006/10/02 04:20:2406/10/02 20:06:0460user.producerpartners.com 208.3.107.170: can't verify reverse address
331006/10/02 02:13:5806/10/02 20:41:0514user.producerpartners.com 208.3.107.171: can't verify reverse address
412106/10/02 12:38:5206/10/02 12:47:017Statistics: duration=nnn id=nnn sent=nnn rcvd=nnn srcif=Vpn3 src=216.206.240.100/pppp cldst=34.28.69.34/443 svsrc=192.168.0.130/pppp dstif=Vpn4 dst=192.168.0.142/443 proto=http-https state=rsa/rc4_128_md5 rule=11 (Unknown error)
512106/10/02 12:36:5706/10/02 12:38:565Statistics: duration=nnn id=nnn sent=nnn rcvd=nnn srcif=Vpn3 src=216.206.240.100/pppp cldst=34.28.69.34/443 svsrc=192.168.0.130/pppp dstif=Vpn4 dst=192.168.0.142/443 proto=http-https state=rsa/rc4_128_md5 rule=11
612106/10/02 09:31:5706/10/02 09:37:254Statistics: duration=nnn id=nnn sent=nnn rcvd=nnn srcif=Vpn3 src=209.5.221.2/pppp cldst=34.28.69.34/443 svsrc=192.168.0.130/pppp dstif=Vpn4 dst=192.168.0.142/443 proto=http-https state=rsa/rc4_128_md5 rule=11
712106/10/02 06:11:3706/10/02 18:11:342Statistics: duration=nnn id=nnn sent=nnn rcvd=nnn srcif=Vpn3 src=209.205.38.34/pppp cldst=64.39.69.33/80 svsrc=209.205.38.34/pppp dstif=Vpn6 dst=172.32.10.11/80 op=GET arg=http://intrapxy1.altairtech.ca/ffhtoronto/images/logon_top.jpg result="304 Not Modified" proto=http rule=2
812106/10/02 02:14:3106/10/02 14:14:082Statistics: duration=nnn id=nnn sent=nnn rcvd=nnn srcif=Vpn3 src=208.3.107.171/pppp cldst=216.63.107.150/80 svsrc=208.3.107.171/pppp dstif=Vpn6 dst=172.32.10.12/80 op=GET arg=http://intrapxy2.altairtech.ca/ffhtoronto/images/logon_top.jpg result="304 Not Modified" proto=http rule=2
912106/10/02 07:44:2606/10/02 19:45:292Statistics: duration=nnn id=nnn sent=nnn rcvd=nnn srcif=Vpn3 src=208.3.107.170/pppp cldst=216.63.107.150/80 svsrc=208.3.107.170/pppp dstif=Vpn6 dst=172.32.10.12/80 op=GET arg=http://intrapxy2.altairtech.ca/ffhtoronto/images/transparent.gif result="304 Not Modified" proto=http rule=2
1012106/10/02 07:45:0506/10/02 19:45:082Statistics: duration=nnn id=nnn sent=nnn rcvd=nnn srcif=Vpn3 src=208.3.107.170/pppp cldst=216.63.107.150/80 svsrc=208.3.107.170/pppp dstif=Vpn6 dst=172.32.10.12/80 op=GET arg=http://intrapxy2.altairtech.ca/ffhtoronto/help/portal_help_top.htm result="304 Not Modified" proto=http rule=2
1112106/10/02 07:44:4506/10/02 19:45:232Statistics: duration=nnn id=nnn sent=nnn rcvd=nnn srcif=Vpn3 src=208.3.107.170/pppp cldst=216.63.107.150/80 svsrc=208.3.107.170/pppp dstif=Vpn6 dst=172.32.10.12/80 op=GET arg=http://intrapxy2.altairtech.ca/ffhtoronto/help/menu.htm result="304 Not Modified" proto=http rule=2
1212106/10/02 08:05:0606/10/02 20:06:042Statistics: duration=nnn id=nnn sent=nnn rcvd=nnn srcif=Vpn3 src=208.3.107.170/pppp cldst=216.63.107.150/80 svsrc=208.3.107.170/pppp dstif=Vpn6 dst=172.32.10.12/80 op=GET arg=http://intrapxy2.altairtech.ca/ffhtoronto/images/corechange.gif result="304 Not Modified" proto=http rule=2
1312106/10/02 04:20:2406/10/02 16:21:262Statistics: duration=nnn id=nnn sent=nnn rcvd=nnn srcif=Vpn3 src=208.3.107.170/pppp cldst=216.63.107.150/80 svsrc=208.3.107.170/pppp dstif=Vpn6 dst=172.32.10.12/80 op=GET arg=http://intrapxy2.altairtech.ca/ffhtoronto/portalfunctions/WebAlign/images/header_priority.gif result="304 Not Modified" proto=http rule=2
1412106/10/02 08:05:2106/10/02 20:06:032Statistics: duration=nnn id=nnn sent=nnn rcvd=nnn srcif=Vpn3 src=208.3.107.170/pppp cldst=216.63.107.150/80 svsrc=208.3.107.170/pppp dstif=Vpn6 dst=172.32.10.12/80 op=GET arg=http://intrapxy2.altairtech.ca/ffhtoronto/images/logon_left.jpg result="304 Not Modified" proto=http rule=2
1512106/10/02 07:45:3506/10/02 19:45:132Statistics: duration=nnn id=nnn sent=nnn rcvd=nnn srcif=Vpn3 src=208.3.107.170/pppp cldst=216.63.107.150/80 svsrc=208.3.107.170/pppp dstif=Vpn6 dst=172.32.10.12/80 op=GET arg=http://intrapxy2.altairtech.ca/ffhtoronto/images/logon_mid_right.gif result="304 Not Modified" proto=http rule=2
1612106/10/02 04:50:0406/10/02 20:08:062Statistics: duration=nnn id=nnn sent=nnn rcvd=nnn srcif=Vpn3 src=216.33.139.166/pppp dst=34.28.69.34/80 op=HEAD arg=/ result="403 Forbidden" proto=http (request denied by gwcontrol)
1712106/10/02 08:40:1306/10/02 20:41:102Statistics: duration=nnn id=nnn sent=nnn rcvd=nnn srcif=Vpn3 src=208.3.107.171/pppp cldst=216.63.107.150/80 svsrc=208.3.107.171/pppp dstif=Vpn6 dst=172.32.10.12/80 op=GET arg=http://intrapxy2.altairtech.ca/ffhtoronto/images/logon_bottom.jpg result="304 Not Modified" proto=http rule=2
1812106/10/02 07:45:3006/10/02 19:44:592Statistics: duration=nnn id=nnn sent=nnn rcvd=nnn srcif=Vpn3 src=208.3.107.170/pppp cldst=216.63.107.150/80 svsrc=208.3.107.170/pppp dstif=Vpn6 dst=172.32.10.12/80 op=GET arg=http://intrapxy2.altairtech.ca/ffhtoronto/controls/windowssso.cab result="304 Not Modified" proto=http rule=2
1912106/10/02 07:45:2006/10/02 19:45:032Statistics: duration=nnn id=nnn sent=nnn rcvd=nnn srcif=Vpn3 src=208.3.107.170/pppp cldst=216.63.107.150/80 svsrc=208.3.107.170/pppp dstif=Vpn6 dst=172.32.10.12/80 op=GET arg=http://intrapxy2.altairtech.ca/ffhtoronto/images/logon_mid_left.gif result="304 Not Modified" proto=http rule=2
2012106/10/02 07:45:1506/10/02 19:45:032Statistics: duration=nnn id=nnn sent=nnn rcvd=nnn srcif=Vpn3 src=208.3.107.170/pppp cldst=216.63.107.150/80 svsrc=208.3.107.170/pppp dstif=Vpn6 dst=172.32.10.12/80 op=GET arg=http://intrapxy2.altairtech.ca/ffhtoronto/help/user_interface.gif result="304 Not Modified" proto=http rule=2
2112106/10/02 08:23:0206/10/02 20:24:002Statistics: duration=nnn id=nnn sent=nnn rcvd=nnn srcif=Vpn3 src=208.3.107.171/pppp cldst=216.63.107.150/80 svsrc=208.3.107.171/pppp dstif=Vpn6 dst=172.32.10.12/80 op=GET arg=http://intrapxy2.altairtech.ca/ffhtoronto/schemes/login.css result="304 Not Modified" proto=http rule=2
2212106/10/02 07:46:2506/10/02 19:45:292Statistics: duration=nnn id=nnn sent=nnn rcvd=nnn srcif=Vpn3 src=208.3.107.170/pppp cldst=216.63.107.150/80 svsrc=208.3.107.170/pppp dstif=Vpn6 dst=172.32.10.12/80 op=GET arg=http://intrapxy2.altairtech.ca/ffhtoronto/schemes/default/window_change_tab.gif result="304 Not Modified" proto=http rule=2
2312106/10/02 07:45:5006/10/02 19:45:132Statistics: duration=nnn id=nnn sent=nnn rcvd=nnn srcif=Vpn3 src=208.3.107.170/pppp cldst=216.63.107.150/80 svsrc=208.3.107.170/pppp dstif=Vpn6 dst=172.32.10.12/80 op=GET arg=http://intrapxy2.altairtech.ca/ffhtoronto/schemes/default/header_logout.gif result="304 Not Modified" proto=http rule=2
2412106/10/02 04:20:2606/10/02 16:21:262Statistics: duration=nnn id=nnn sent=nnn rcvd=nnn srcif=Vpn3 src=208.3.107.170/pppp cldst=216.63.107.150/80 svsrc=208.3.107.170/pppp dstif=Vpn6 dst=172.32.10.12/80 op=GET arg=http://intrapxy2.altairtech.ca/ffhtoronto/schemes/default/default.css result="304 Not Modified" proto=http rule=2
2512106/10/02 06:07:2206/10/02 18:08:252Statistics: duration=nnn id=nnn sent=nnn rcvd=nnn srcif=Vpn3 src=208.3.107.171/pppp cldst=216.63.107.150/80 svsrc=208.3.107.171/pppp dstif=Vpn6 dst=172.32.10.12/80 op=GET arg=http://intrapxy2.altairtech.ca/ffhtoronto/images/logon_background.gif result="304 Not Modified" proto=http rule=2
2612106/10/02 07:46:1006/10/02 19:45:282Statistics: duration=nnn id=nnn sent=nnn rcvd=nnn srcif=Vpn3 src=208.3.107.170/pppp cldst=216.63.107.150/80 svsrc=208.3.107.170/pppp dstif=Vpn6 dst=172.32.10.12/80 op=GET arg=http://intrapxy2.altairtech.ca/ffhtoronto/schemes/default/header_tab_edge.gif result="304 Not Modified" proto=http rule=2
2712106/10/02 07:46:2006/10/02 19:45:292Statistics: duration=nnn id=nnn sent=nnn rcvd=nnn srcif=Vpn3 src=208.3.107.170/pppp cldst=216.63.107.150/80 svsrc=208.3.107.170/pppp dstif=Vpn6 dst=172.32.10.12/80 op=GET arg=http://intrapxy2.altairtech.ca/ffhtoronto/schemes/default/window_frame_background.gif result="304 Not Modified" proto=http rule=2
2812106/10/02 02:14:3006/10/02 14:14:052Statistics: duration=nnn id=nnn sent=nnn rcvd=nnn srcif=Vpn3 src=208.3.107.171/pppp cldst=216.63.107.150/80 svsrc=208.3.107.171/pppp dstif=Vpn6 dst=172.32.10.12/80 op=GET arg=http://intrapxy2.altairtech.ca/ffhtoronto/images/mi2g.gif result="304 Not Modified" proto=http rule=2
2912106/10/02 07:44:4006/10/02 19:45:232Statistics: duration=nnn id=nnn sent=nnn rcvd=nnn srcif=Vpn3 src=208.3.107.170/pppp cldst=216.63.107.150/80 svsrc=208.3.107.170/pppp dstif=Vpn6 dst=172.32.10.12/80 op=GET arg=http://intrapxy2.altairtech.ca/ffhtoronto/schemes/default/window_maximize.gif result="304 Not Modified" proto=http rule=2
3012106/10/02 06:11:2806/10/02 18:11:342Statistics: duration=nnn id=nnn sent=nnn rcvd=nnn srcif=Vpn3 src=209.205.38.34/pppp cldst=64.39.69.33/80 svsrc=209.205.38.34/pppp dstif=Vpn6 dst=172.32.10.11/80 op=GET arg=http://intrapxy1.altairtech.ca/ffhtoronto/images/mi2g.gif result="304 Not Modified" proto=http rule=2
!!!There were 51 messages to be reported but the listing is limited to 30.


KERNEL - Back to top
No.TypeStartEndCountMessage
130106/10/02 00:02:0106/10/02 23:58:11545Internal warning: TCP session [state: 3, inactive for nn seconds] between 34.28.65.8/pppp and 34.28.69.36/80 timed out due to inactivity
222606/10/02 00:34:2206/10/02 13:30:5412IP packet dropped (sntc01hpov.exodus.net[216.33.139.166]->mail.altairtech.ca[34.28.69.34]: Protocol=ICMP[Mask request]): Unusual or disallowed ICMP (received on interface 34.28.69.34)
330106/10/02 06:12:4106/10/02 18:12:416Internal warning: TCP session [state: 3, inactive for nn seconds] between 209.205.38.34/pppp and 64.39.69.33/80 timed out due to inactivity
430106/10/02 00:42:2406/10/02 17:44:335Internal warning: TCP session [state: 3, inactive for nn seconds] between 216.52.49.35/pppp and 34.28.69.34/25 timed out due to inactivity
530106/10/02 09:32:3106/10/02 09:38:354Internal warning: TCP session [state: 3, inactive for nn seconds] between 209.5.221.2/pppp and 34.28.69.34/443 timed out due to inactivity
630106/10/02 04:51:2706/10/02 20:08:332Internal warning: TCP session [state: 3, inactive for nn seconds] between 216.33.139.166/pppp and 34.28.69.34/80 timed out due to inactivity
730106/10/02 12:37:2406/10/02 12:42:002Internal warning: TCP session [state: 3, inactive for nn seconds] between 216.206.240.100/pppp and 34.28.69.34/443 timed out due to inactivity
830106/10/02 12:42:3306/10/02 12:42:331Internal warning: TCP session [state: 3, inactive for nn seconds] between 192.168.0.142/pppp and 192.168.0.130/4528 timed out due to inactivity
930106/10/02 17:18:0506/10/02 17:18:051Internal warning: TC