I prefer nmap or nmapfe against the public IP of a machine. If you've been trojaned or rootkitted, lsof and netstat are suspect.
Valid point. In this case, however, we were merely troubleshooting a service not checking for security holes or vulnerabilities. :-)
Cheers,
-- Rodolfo J. Paiz rpaiz@xxxxxxxxxxxxxx http://www.simpaticus.com