Full Disclosure mailing list archives

Re: Strange port 53 requests


From: Blue Boar <blueboar () thievco com>
Date: Thu, 4 Sep 2003 16:46:50 -0700 (PDT)

On Fri, 5 Sep 2003, Peter van den Heuvel wrote:

UDP port 53 gets queried on several of the firewalls that I maintain
(and that do not provide any domain name services) from netblocks that
are owned by microsoft and realmedia (mostly). None of the machines
behind these firewalls are allowed any external DNS directly. The
queries are rather massive (thousands per week).

Searches on google did not turn up anything and I don't remember seeing
anything on the lists either (though I migh have prematurely deleted
something relevant because of the noise ;^)

Search for BigIP, check the Incidents mailing list archives.  These are 
(probably) global load-balancer devices, designed to help the site pick 
which server(s) to handle your queries.  

                                                BB

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.netsys.com/full-disclosure-charter.html


Current thread: