-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Logwatch on my laptop tells me Listed by source hosts: Dropped 30 packets on interface eth0 From 192.168.0.40 - 30 packets to tcp(38575) 192.168.0.40 is a mail/file/print server running SL. It may also be relevant that the laptop has fstab mounts to data areas on the server. I feel that there must be some way I can trace what is actually sending those packets, so that I can make an assessment, but I've no idea how/where to look. I see that it's an unallocated address, so I've no pointer at all. Where should I start looking? Anne -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.12 (GNU/Linux) Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org/ iEYEARECAAYFAk/2qpMACgkQj93fyh4cnBeQlQCggnN/Spo5TubvCrXtCogKVTiJ VWQAnReuFaQpTA9pJOFweO5K40tPBuUM =vRqk -----END PGP SIGNATURE-----