host #tar -f /var/log/messages Oct 9 10:19:46 localhost kernel: OUTBOUND CONN TCP: IN=tap0 OUT=eth0 SRC=192.168.0.144 DST=192.168.1.105 LEN=60 TOS=0x10 PREC=0x00 TTL=63 ID=40167 DF PROTO=TCP SPT=1032 DPT=23 WINDOW=5840 RES=0x00 SYN URGP=0 Oct 9 10:19:49 localhost kernel: OUTBOUND CONN TCP: IN=tap0 OUT=eth0 SRC=192.168.0.144 DST=192.168.1.105 LEN=60 TOS=0x10 PREC=0x00 TTL=63 ID=40168 DF PROTO=TCP SPT=1032 DPT=23 WINDOW=5840 RES=0x00 SYN URGP=0 Oct 9 10:19:55 localhost kernel: OUTBOUND CONN TCP: IN=tap0 OUT=eth0 SRC=192.168.0.144 DST=192.168.1.105 LEN=60 TOS=0x10 PREC=0x00 TTL=63 ID=40169 DF PROTO=TCP SPT=1032 DPT=23 WINDOW=5840 RES=0x00 SYN URGP=0 Oct 9 10:20:51 localhost kernel: OUTBOUND CONN TCP: IN=tap0 OUT=eth0 SRC=192.168.0.144 DST=192.168.1.220 LEN=60 TOS=0x10 PREC=0x00 TTL=63 ID=55900 DF PROTO=TCP SPT=1033 DPT=21 WINDOW=5840 RES=0x00 SYN URGP=0 Oct 9 10:20:54 localhost kernel: OUTBOUND CONN TCP: IN=tap0 OUT=eth0 SRC=192.168.0.144 DST=192.168.1.220 LEN=60 TOS=0x10 PREC=0x00 TTL=63 ID=55901 DF PROTO=TCP SPT=1033 DPT=21 WINDOW=5840 RES=0x00 SYN URGP=0 Oct 9 10:21:00 localhost kernel: OUTBOUND CONN TCP: IN=tap0 OUT=eth0 SRC=192.168.0.144 DST=192.168.1.220 LEN=60 TOS=0x10 PREC=0x00 TTL=63 ID=55902 DF PROTO=TCP SPT=1033 DPT=21 WINDOW=5840 RES=0x00 SYN URGP=0 Oct 9 10:21:43 localhost kernel: OUTBOUND CONN TCP: IN=tap0 OUT=eth0 SRC=192.168.0.144 DST=192.168.1.5 LEN=60 TOS=0x10 PREC=0x00 TTL=63 ID=56149 DF PROTO=TCP SPT=1034 DPT=80 WINDOW=5840 RES=0x00 SYN URGP=0 Oct 9 10:21:46 localhost kernel: OUTBOUND CONN TCP: IN=tap0 OUT=eth0 SRC=192.168.0.144 DST=192.168.1.5 LEN=60 TOS=0x10 PREC=0x00 TTL=63 ID=56150 DF PROTO=TCP SPT=1034 DPT=80 WINDOW=5840 RES=0x00 SYN URGP=0 Oct 9 10:22:08 localhost kernel: OUTBOUND CONN TCP: IN=tap0 OUT=eth0 SRC=192.168.0.144 DST=192.168.1.115 LEN=60 TOS=0x10 PREC=0x00 TTL=63 ID=34767 DF PROTO=TCP SPT=1035 DPT=6667 WINDOW=5840 RES=0x00 SYN URGP=0 Oct 9 10:22:11 localhost kernel: Drop TCP after 9 connections IN=tap0 OUT=eth0 SRC=192.168.0.144 DST=192.168.1.115 LEN=60 TOS=0x10 PREC=0x00 TTL=63 ID=34768 DF PROTO=TCP SPT=1035 DPT=6667 WINDOW=5840 RES=0x00 SYN URGP=0 Oct 9 10:22:18 localhost kernel: Drop TCP after 9 connections IN=tap0 OUT=eth0 SRC=192.168.0.144 DST=192.168.1.115 LEN=60 TOS=0x10 PREC=0x00 TTL=63 ID=34769 DF PROTO=TCP SPT=1035 DPT=6667 WINDOW=5840 RES=0x00 SYN URGP=0