Advertisement
Help Keep Boards Alive. Support us by going ad free today. See here: https://subscriptions.boards.ie/.
https://www.boards.ie/group/1878-subscribers-forum

Private Group for paid up members of Boards.ie. Join the club.
Hi all, please see this major site announcement: https://www.boards.ie/discussion/2058427594/boards-ie-2026

UPC cisco router firewall logging TCP or UDP based port scan from a UPC IP address

  • 09-02-2013 09:42PM
    #1
    Registered Users, Registered Users 2 Posts: 104 ✭✭


    Cisco router: Cisco EPC2425
    This happens every few days at different times, along with an "Illegal TCP Header" from a US IP address (registered with comcast according to a whois).

    Here's an example of a logged message
    TCP- or UDP-based Port Scan 34 Sun Jan 13 16:11:01 2013 MyIP:61989 89.101.160.4:53 (this is UPC I think, so it's ok to post right?)
    Illegal TCP header 6 Sun Jan 13 16:12:33 2013 192.168.1.21:0 98.216.8*.***:0

    Always from the same IPs. What's wrong? Am I ok to keep letting this happen?


Comments

  • Moderators, Computer Games Moderators, Technology & Internet Moderators, Help & Feedback Category Moderators Posts: 26,945 CMod ✭✭✭✭Spear


    Appears to be someone port scanning for DNS servers, but since you're not publicly exposing one it'll get nowhere and the firewall is doing its job.


Advertisement
Advertisement