Return-Path: Delivered-To: apmail-tomcat-users-archive@www.apache.org Received: (qmail 88139 invoked from network); 7 Nov 2010 18:04:03 -0000 Received: from unknown (HELO mail.apache.org) (140.211.11.3) by 140.211.11.9 with SMTP; 7 Nov 2010 18:04:03 -0000 Received: (qmail 45955 invoked by uid 500); 7 Nov 2010 18:04:31 -0000 Delivered-To: apmail-tomcat-users-archive@tomcat.apache.org Received: (qmail 45801 invoked by uid 500); 7 Nov 2010 18:04:31 -0000 Mailing-List: contact users-help@tomcat.apache.org; run by ezmlm Precedence: bulk List-Help: List-Unsubscribe: List-Post: List-Id: Reply-To: "Tomcat Users List" Delivered-To: mailing list users@tomcat.apache.org Received: (qmail 45792 invoked by uid 99); 7 Nov 2010 18:04:31 -0000 Received: from nike.apache.org (HELO nike.apache.org) (192.87.106.230) by apache.org (qpsmtpd/0.29) with ESMTP; Sun, 07 Nov 2010 18:04:31 +0000 X-ASF-Spam-Status: No, hits=-2.3 required=10.0 tests=RCVD_IN_DNSWL_MED,SPF_PASS X-Spam-Check-By: apache.org Received-SPF: pass (nike.apache.org: local policy) Received: from [216.82.254.195] (HELO mail200.messagelabs.com) (216.82.254.195) by apache.org (qpsmtpd/0.29) with ESMTP; Sun, 07 Nov 2010 18:04:20 +0000 X-VirusChecked: Checked X-Env-Sender: Chuck.Caldarale@unisys.com X-Msg-Ref: server-13.tower-200.messagelabs.com!1289153025!80768388!13 X-StarScan-Version: 6.2.9; banners=-,-,- X-Originating-IP: [192.61.61.104] Received: (qmail 15141 invoked from network); 7 Nov 2010 18:03:58 -0000 Received: from unknown (HELO USEA-NAEDGE1.unisys.com) (192.61.61.104) by server-13.tower-200.messagelabs.com with RC4-SHA encrypted SMTP; 7 Nov 2010 18:03:58 -0000 Received: from usea-nahubcas1.na.uis.unisys.com (129.224.76.114) by USEA-NAEDGE1.unisys.com (192.61.61.104) with Microsoft SMTP Server (TLS) id 8.1.393.1; Sun, 7 Nov 2010 12:03:30 -0600 Received: from USEA-EXCH8.na.uis.unisys.com ([129.224.76.42]) by usea-nahubcas1.na.uis.unisys.com ([129.224.76.114]) with mapi; Sun, 7 Nov 2010 12:03:30 -0600 From: "Caldarale, Charles R" To: Tomcat Users List Date: Sun, 7 Nov 2010 12:03:26 -0600 Subject: RE: Malicious host is crashing my server Thread-Topic: Malicious host is crashing my server Thread-Index: Act+pWZwW7EadTcjRR2I0BrelehgXgAAElHw Message-ID: <99C8B2929B39C24493377AC7A121E21F99F892D732@USEA-EXCH8.na.uis.unisys.com> References: <745267.95902.qm@web54409.mail.re2.yahoo.com>,<99C8B2929B39C24493377AC7A121E21F99F892D730@USEA-EXCH8.na.uis.unisys.com> In-Reply-To: Accept-Language: en-US Content-Language: en-US X-MS-Has-Attach: X-MS-TNEF-Correlator: acceptlanguage: en-US Content-Type: text/plain; charset="us-ascii" Content-Transfer-Encoding: quoted-printable MIME-Version: 1.0 X-Virus-Checked: Checked by ClamAV on apache.org > From: Martin Gainty [mailto:mgainty@hotmail.com]=20 > Subject: RE: Malicious host is crashing my server > the culprit will change IPs That's why I said it was a temporary workaround. However, given the DNS na= me in use, it is likely assigned via DHCP by the perp's ISP, so an IP mask = could be used to take out a range of IP addresses - at the risk of annoying= any legitimate clients using the same ISP. - Chuck THIS COMMUNICATION MAY CONTAIN CONFIDENTIAL AND/OR OTHERWISE PROPRIETARY MA= TERIAL and is thus for use only by the intended recipient. If you received = this in error, please contact the sender and delete the e-mail and its atta= chments from all computers. --------------------------------------------------------------------- To unsubscribe, e-mail: users-unsubscribe@tomcat.apache.org For additional commands, e-mail: users-help@tomcat.apache.org