[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
Re: [Full-Disclosure] Strange port 53 requests
- To: Peter van den Heuvel <peter@xxxxxxxxxxxxxxxx>
- Subject: Re: [Full-Disclosure] Strange port 53 requests
- From: Blue Boar <blueboar@xxxxxxxxxxx>
- Date: Thu, 4 Sep 2003 16:46:50 -0700 (PDT)
On Fri, 5 Sep 2003, Peter van den Heuvel wrote:
> UDP port 53 gets queried on several of the firewalls that I maintain
> (and that do not provide any domain name services) from netblocks that
> are owned by microsoft and realmedia (mostly). None of the machines
> behind these firewalls are allowed any external DNS directly. The
> queries are rather massive (thousands per week).
>
> Searches on google did not turn up anything and I don't remember seeing
> anything on the lists either (though I migh have prematurely deleted
> something relevant because of the noise ;^)
Search for BigIP, check the Incidents mailing list archives. These are
(probably) global load-balancer devices, designed to help the site pick
which server(s) to handle your queries.
BB
_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.netsys.com/full-disclosure-charter.html