[Dshield] massive scans on 255.255.255.255:80

k.lichtenwalder@computer.org k.lichtenwalder at computer.org
Tue Aug 7 06:47:36 GMT 2001


Hi,

anybody else sees this? One machine I'm administering gets hit with
Broadcast packages to port 80. It's all crushing on the firewall, but
still. I mean, being tcp and all, what's a broadcast package worth then?
Can you still map a subnet or so? The packages are coming from a
multitude of different addresses.

Klaus
-- 
------------------------------------------------------------------------ 
 Klaus Lichtenwalder, Dipl. Inform.,       http://www.webforum.de/Klaus/
 Fax +49-(0)89-91072699                            Lichtenwalder at ACM.org
 NIC: KL2100, KL76-RIPE                     K.Lichtenwalder at Computer.org
 PGP Key fingerprint = 2658 EA97 E1A1 2680 5ECA  0036 80F5 F250 3CF8
C2C7




More information about the list mailing list