Lots of weird firewall log entries the last hours:
Aug 5 20:14:29 greenblatt kernel: [1979778.811312] FW reject: IN=ppp0 OUT= MAC= SRC=2002:5dbc:91e1:0009:f018:413b:114c:558e DST=2001:0980:14ca:0042:0000:0000:0000:0018 LEN=72 TC=0 HOPLIMIT=120 FLOWLBL=0 PROTO=TCP SPT=57475 DPT=445 WINDOW=8192 RES=0x00 SYN URGP=0
Aug 5 20:14:32 greenblatt kernel: [1979780.010928] FW reject: IN=ppp0 OUT= MAC= SRC=2002:5dbc:91e1:0009:f018:413b:114c:558e DST=2001:0980:14ca:0042:0000:0000:0000:0018 LEN=72 TC=0 HOPLIMIT=120 FLOWLBL=0 PROTO=TCP SPT=57475 DPT=445 WINDOW=8192 RES=0x00 SYN URGP=0
Aug 5 20:14:38 greenblatt kernel: [1979782.469487] FW reject: IN=ppp0 OUT= MAC= SRC=2002:5dbc:91e1:0009:f018:413b:114c:558e DST=2001:0980:14ca:0042:0000:0000:0000:0018 LEN=68 TC=0 HOPLIMIT=120 FLOWLBL=0 PROTO=TCP SPT=57475 DPT=445 WINDOW=8192 RES=0x00 SYN URGP=0
Aug 5 20:15:48 greenblatt kernel: [1979814.822653] FW reject: IN=ppp0 OUT= MAC= SRC=2002:5dbc:91e1:0009:f018:413b:114c:558e DST=2001:0980:14ca:0042:0000:0000:0000:0018 LEN=72 TC=0 HOPLIMIT=120 FLOWLBL=0 PROTO=TCP SPT=57480 DPT=445 WINDOW=8192 RES=0x00 SYN URGP=0
Aug 5 20:15:51 greenblatt kernel: [1979816.011978] FW reject: IN=ppp0 OUT= MAC= SRC=2002:5dbc:91e1:0009:f018:413b:114c:558e DST=2001:0980:14ca:0042:0000:0000:0000:0018 LEN=72 TC=0 HOPLIMIT=120 FLOWLBL=0 PROTO=TCP SPT=57480 DPT=445 WINDOW=8192 RES=0x00 SYN URGP=0
Aug 5 20:15:57 greenblatt kernel: [1979818.396778] FW reject: IN=ppp0 OUT= MAC= SRC=2002:5dbc:91e1:0009:f018:413b:114c:558e DST=2001:0980:14ca:0042:0000:0000:0000:0018 LEN=68 TC=0 HOPLIMIT=120 FLOWLBL=0 PROTO=TCP SPT=57480 DPT=445 WINDOW=8192 RES=0x00 SYN URGP=0
Those addresses are the 6to4 range with 93.188.145.225 as IPv4 source. But I
can't find any mention of the IPv6 range or that IPv4 address in any
logs. And I wouldn't know why some machine would try to access smb services
on idefix.net from the outside.