Security Incidents mailing list archives

Big traffic on 412/tcp


From: Guido Van De Velde <Guido.VanDeVelde () cc kuleuven ac be>
Date: Wed, 24 Apr 2002 10:43:20 +0200

We see here in our Cisco netflow data quite a large amount of data coming from 412/tcp (about 20 gbyte/day, about 1/8 of our http data). It seem to me that the official use, synoptics-trap, isn't that used, or am I wrong.

Does anyone know what they transport on this port ?

TIA
--
guido


----------------------------------------------------------------------------
This list is provided by the SecurityFocus ARIS analyzer service.
For more information on this free incident handling, management and tracking system please see: http://aris.securityfocus.com


Current thread: