Subj : Apache and Port 80 hits? To : Mike Luther From : Jonathan de Boyne Pollard Date : Sat Oct 27 2001 04:12 pm [Moved from OS2DOSBBS to OS2INET ...] ML> I can take rather large samples of the octets from the logs and look ML> back to them with HOST. They will be reported back as not resolvable ML> to a name. To me that suggests that these might be spoofed addresses. They aren't necessarily spoofed. Many companies simply don't bother setting up the IP address to name mappings in the DNS. Others don't set them up for privacy reasons. ¯ JdeBP ® --- FleetStreet 1.22 NR * Origin: JdeBP's point, using Squish (1:109/921.70) .