Being port-scanned : is there any relief?

kaat's picture

He has: 11 posts

Joined: May 2004

I run a small personal server. I know getting port-scanned is 'normal' and apparently can't be stopped, but I wish it wouldn't bog down my server so much. As I write, I am being port scanned; Kerio is showing up to 200 UDP ports open and close in sequence, in quick succession. Other uses can hardly access the server. I think my DNS server is the bottleneck.

Any tips for easing the situation?
Thanks!

My details:
PC is Athlon 800MHz 512GB RAM Win98SE (I know, not the best choice!)
Server is Apache 1.3.31 (new version!)
DNS server is Posadis 0.60.4
Kerio Mail Server 5.7.9
Running Perl, PHP, and MySQL

What kind of signature would move someone to post a message about it? And would they know if they should make that post, or not? I was hoping someone here would know. But apparently not.

He has: 51 posts

Joined: Jan 2004

setup a firewall to block all ports except 80.
Ideally, you setup a small router (Linksys) to do the blocking. It will still slow down the access pipe, but not as much.

Want to join the discussion? Create an account or log in if you already have one. Joining is fast, free and painless! We’ll even whisk you back here when you’ve finished.