What was the exploit attack? Was the node DMZ'ed, or had more than necessary ports open to it? Was the standard port, 4569, opened on the WAN into the network? On Wed, 2017-06-14 at 12:03 -0400, DuaneVT . wrote:
Our node is offline currently due to an exploit attack. Our network administrator shows heavy traffic out on port 2222 among others. We don't use this port. So reload the new image. For future reloads, how best to reconstruct the local changes done to the original image to carry over the custom config files? 73, Duane KA1LM
_______________________________________________ App_rpt-users mailing list App_rpt-users@lists.allstarlink.org http://lists.allstarlink.org/cgi-bin/mailman/listinfo/app_rpt-users
To unsubscribe from this list please visit http://lists.allstarlink.org/cgi-bin/mailman/listinfo/app_rpt-users and scroll down to the bottom of the page. Enter your email address and press the "Unsubscribe or edit options button" You do not need a password to unsubscribe, you can do it via email confirmation. If you have trouble unsubscribing, please send a message to the list detailing the problem.