January 27th, 2011, 04:06 AM
Illegal connection state attack
I get alerts/reports of lots of attacks on my gateway at home.
Typically, they look like:
Hack Attack: DROP ICMP packet from [ppp0] 220.127.116.11 to xxx.xxx.xxx.xx <SPI:Illegal connection state attack>
Some days, I might get emailed reports of up to 60 of these attacks.
It seems the firewall is doing it's job, but should I be concerned?
February 8th, 2011, 05:43 AM
it seems to be a DDOS attack.
You can contact you ISP(Internet service provide) with the logs and ask them to block the source of attack.