-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Bill Smith wrote:
> Hi Guys,
>
> My firewall is constantly being bombared with udp-13947.
> Anyone has any idea what is this port for?
>
> Thx,
>
First, define 'bombarded' -- how many per second?
How long has this been going on?
Checking DSHIELD, I don't see any blip there.
What is the packet size? TTL? Source IP(s)? All to same destination IP?
How about capturing some packets? Just open a port in the firewall, use
a netcat listener to keep the port open, and run tshark to grab the packets.
Jon K.
- --
Jon R. Kibler
Chief Technical Officer
Advanced Systems Engineering Technology, Inc.
Charleston, SC USA
o: 843-849-8214
c: 843-224-2494
s: 843-564-4224
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.8 (Darwin)
Comment: Using GnuPG with Mozilla -
http://enigmail.mozdev.orgiEYEARECAAYFAkgfleYACgkQUVxQRc85QlNiqQCgl0z9RwGtSzvRCceNMv1nFa+i
Q9gAniZfqnzCk3o1aeACmZFKu6gz0tpD
=3lur
-----END PGP SIGNATURE-----
==================================================
Filtered by: TRUSTEM.COM's Email Filtering Service
http://www.trustem.com/No Spam. No Viruses. Just Good Clean Email.