[Intrusions] increased scans on udp port 0

Jeff.Arey at telos.com Jeff.Arey at telos.com
Tue Dec 20 16:20:51 GMT 2005


I am a newbie to the list, so pardon my question if it's been posted before.
While monitoring my perimeter/border router Snort logs, I have noticed a
dramatic increase over the last two days of port scans to udp port 0 on two
of our leased ISP  IP address ranges.  Is this cyclic in nature or should I
be really concerned about recon, etc?  It gets blocked at the firewall, but
is an increase like I have never seen.

 

Thanks,

Jeff Arey




More information about the Intrusions mailing list