Hi All,
I am seeing strange what appears to be a port scan where the source address
keeps changing from classes A, B and C and the destination is always a
network like 91.58.0.0, 101.20.0.0, 206.67.0.0, etc. Most of source ports
used are in the high range above 10000. The Info field on the log says h_len
24 ip_vers 0
Does anyone know what it is. The packets are being dropped on rule 0 at the
firewall.
Siddika
================================================================================
To unsubscribe from this mailing list, please see the instructions at
http://www.checkpoint.com/services/mailing.html
================================================================================