OPNsense
tcp/8443
nginx 1.18.0
tcp/443 tcp/80
Open service 202.159.121.123:80 · ticket.steelytoe.com
2025-12-30 09:41
HTTP/1.1 200 OK
Server: nginx/1.18.0 (Ubuntu)
Date: Tue, 30 Dec 2025 09:41:08 GMT
Content-Type: text/html
Content-Length: 612
Last-Modified: Tue, 21 Apr 2020 14:09:01 GMT
Connection: close
ETag: "5e9efe7d-264"
X-XSS-Protection: 1; mode=block
X-XSS-Protection: 1; mode=block
Accept-Ranges: bytes
Page title: Welcome to nginx!
<!DOCTYPE html>
<html>
<head>
<title>Welcome to nginx!</title>
<style>
body {
width: 35em;
margin: 0 auto;
font-family: Tahoma, Verdana, Arial, sans-serif;
}
</style>
</head>
<body>
<h1>Welcome to nginx!</h1>
<p>If you see this page, the nginx web server is successfully installed and
working. Further configuration is required.</p>
<p>For online documentation and support please refer to
<a href="http://nginx.org/">nginx.org</a>.<br/>
Commercial support is available at
<a href="http://nginx.com/">nginx.com</a>.</p>
<p><em>Thank you for using nginx.</em></p>
</body>
</html>
Open service 202.159.121.123:443 · ticket.steelytoe.com
2025-12-30 09:41
HTTP/1.1 302 Found Server: nginx/1.18.0 (Ubuntu) Date: Tue, 30 Dec 2025 09:41:09 GMT Content-Type: text/html; charset=utf-8 Content-Length: 0 Connection: close Set-Cookie: csrf_cookie_name=44cf0b864087f81889342f9401dafffb; expires=Tue, 30-Dec-2025 10:41:09 GMT; Max-Age=3600; path=/ Set-Cookie: sp_session=a79u50she8uomii8qq3jh4o9p2qlv3af; expires=Tue, 30-Dec-2025 17:41:09 GMT; Max-Age=28800; path=/; HttpOnly Expires: Thu, 19 Nov 1981 08:52:00 GMT Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Location: https://ticket.steelytoe.com/authentication/login X-XSS-Protection: 1; mode=block X-XSS-Protection: 1; mode=block
Open service 202.159.121.123:8443 · ticket.steelytoe.com
2025-12-30 09:41
HTTP/1.1 200 OK
Set-Cookie: PHPSESSID=c753f95c09de89b6ecab76ec3ca1492e; path=/; secure; HttpOnly
Set-Cookie: PHPSESSID=c753f95c09de89b6ecab76ec3ca1492e; path=/; secure; HttpOnly
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate
Pragma: no-cache
Content-Security-Policy: default-src 'self'; script-src 'self' 'unsafe-inline' 'unsafe-eval'; style-src 'self' 'unsafe-inline' 'unsafe-eval';
X-Frame-Options: SAMEORIGIN
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
Referrer-Policy: same-origin
Content-type: text/html; charset=UTF-8
Accept-Ranges: bytes
Content-Length: 1490
Connection: close
Date: Tue, 30 Dec 2025 09:41:07 GMT
Server: OPNsense
Page title: Error | OPNsense
<!doctype html>
<html lang="en" class="no-js">
<head>
<meta charset="UTF-8" />
<meta http-equiv="X-UA-Compatible" content="IE=edge">
<meta name="robots" content="noindex, nofollow" />
<meta name="keywords" content="" />
<meta name="description" content="" />
<meta name="copyright" content="" />
<meta name="viewport" content="width=device-width, initial-scale=1, minimum-scale=1" />
<title>Error | OPNsense</title>
<link href="/ui/themes/cicada/build/css/main.css?v=4563758536aa233f" rel="stylesheet">
<link href="/ui/themes/cicada/build/images/favicon.png?v=4563758536aa233f" rel="shortcut icon">
<script src="/ui/js/jquery-3.5.1.min.js"></script>
<script>
$( document ).ready(function() {
$.ajaxSetup({
'beforeSend': function(xhr) {
xhr.setRequestHeader("X-CSRFToken", "SWlYMTVvYUJZNEswQzVSRU4yRjBtdz09" );
}
});
});
</script>
</head>
<body class="page-login">
<div id=container">
<p> </p>
<p style="text-align: center;">
<a href="/index.php?logout">A potential <a href="http://en.wikipedia.org/wiki/DNS_rebinding">DNS Rebind attack</a> has been detected.<br />Try to access the router by IP address instead of by hostname. You can disable this check if needed under System: Settings: Administration.</a>
</p>
</div>
</body>
</html>
Open service 202.159.121.123:443 · ticket.steelytoe.com
2025-12-23 10:12
HTTP/1.1 302 Found Server: nginx/1.18.0 (Ubuntu) Date: Tue, 23 Dec 2025 10:12:29 GMT Content-Type: text/html; charset=utf-8 Content-Length: 0 Connection: close Set-Cookie: csrf_cookie_name=033e391655a2d92d0e9c938bc8912370; expires=Tue, 23-Dec-2025 11:12:26 GMT; Max-Age=3600; path=/ Set-Cookie: sp_session=c18koagl3e8p3bfk8vj72lvtqanfkh9l; expires=Tue, 23-Dec-2025 18:12:29 GMT; Max-Age=28800; path=/; HttpOnly Expires: Thu, 19 Nov 1981 08:52:00 GMT Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Location: https://ticket.steelytoe.com/authentication/login X-XSS-Protection: 1; mode=block X-XSS-Protection: 1; mode=block
Open service 202.159.121.123:80 · ticket.steelytoe.com
2025-12-23 10:12
HTTP/1.1 200 OK
Server: nginx/1.18.0 (Ubuntu)
Date: Tue, 23 Dec 2025 10:12:26 GMT
Content-Type: text/html
Content-Length: 612
Last-Modified: Tue, 21 Apr 2020 14:09:01 GMT
Connection: close
ETag: "5e9efe7d-264"
X-XSS-Protection: 1; mode=block
X-XSS-Protection: 1; mode=block
Accept-Ranges: bytes
Page title: Welcome to nginx!
<!DOCTYPE html>
<html>
<head>
<title>Welcome to nginx!</title>
<style>
body {
width: 35em;
margin: 0 auto;
font-family: Tahoma, Verdana, Arial, sans-serif;
}
</style>
</head>
<body>
<h1>Welcome to nginx!</h1>
<p>If you see this page, the nginx web server is successfully installed and
working. Further configuration is required.</p>
<p>For online documentation and support please refer to
<a href="http://nginx.org/">nginx.org</a>.<br/>
Commercial support is available at
<a href="http://nginx.com/">nginx.com</a>.</p>
<p><em>Thank you for using nginx.</em></p>
</body>
</html>
Open service 202.159.121.123:8443 · ticket.steelytoe.com
2025-12-23 10:12
HTTP/1.1 200 OK
Set-Cookie: PHPSESSID=1a3ab3c1e7a39a93a593d54c4da83a14; path=/; secure; HttpOnly
Set-Cookie: PHPSESSID=1a3ab3c1e7a39a93a593d54c4da83a14; path=/; secure; HttpOnly
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate
Pragma: no-cache
Content-Security-Policy: default-src 'self'; script-src 'self' 'unsafe-inline' 'unsafe-eval'; style-src 'self' 'unsafe-inline' 'unsafe-eval';
X-Frame-Options: SAMEORIGIN
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
Referrer-Policy: same-origin
Content-type: text/html; charset=UTF-8
Accept-Ranges: bytes
Content-Length: 1490
Connection: close
Date: Tue, 23 Dec 2025 10:12:25 GMT
Server: OPNsense
Page title: Error | OPNsense
<!doctype html>
<html lang="en" class="no-js">
<head>
<meta charset="UTF-8" />
<meta http-equiv="X-UA-Compatible" content="IE=edge">
<meta name="robots" content="noindex, nofollow" />
<meta name="keywords" content="" />
<meta name="description" content="" />
<meta name="copyright" content="" />
<meta name="viewport" content="width=device-width, initial-scale=1, minimum-scale=1" />
<title>Error | OPNsense</title>
<link href="/ui/themes/cicada/build/css/main.css?v=4563758536aa233f" rel="stylesheet">
<link href="/ui/themes/cicada/build/images/favicon.png?v=4563758536aa233f" rel="shortcut icon">
<script src="/ui/js/jquery-3.5.1.min.js"></script>
<script>
$( document ).ready(function() {
$.ajaxSetup({
'beforeSend': function(xhr) {
xhr.setRequestHeader("X-CSRFToken", "aUV4bUF2ZDM5em0yTllzemZjeFJBZz09" );
}
});
});
</script>
</head>
<body class="page-login">
<div id=container">
<p> </p>
<p style="text-align: center;">
<a href="/index.php?logout">A potential <a href="http://en.wikipedia.org/wiki/DNS_rebinding">DNS Rebind attack</a> has been detected.<br />Try to access the router by IP address instead of by hostname. You can disable this check if needed under System: Settings: Administration.</a>
</p>
</div>
</body>
</html>