- Jun 15, 2001
- 34,413
- 1,601
- 126
So every once in a while I log into my OpenBSD firewall to see what's been going on. Today I noticed that I have been getting *slammed* by computers mostly in the 221.x.x.x IP range and always on port 12200. I looked up the IP range and it's from Asia, and port 12200 appears to be something SAN related.
I mean this thing is going nuts. All kids of different IP addresses, mostly in the same 221 range. Here's a sample:
There are tons of these things. 231 in the last four hours and ten minutes. They're also pinging me.
Any idea what this is or anything I can do about it?
I mean this thing is going nuts. All kids of different IP addresses, mostly in the same 221 range. Here's a sample:
Code:
15:11:12.000456 221.1.220.199.12200 > CHAOTIC42IP.2479: S 1966153762:1966153762(0) win 8192 (DF)
15:11:12.306937 221.1.220.199.12200 > CHAOTIC42IP.9090: S 1966213044:1966213044(0) win 8192 (DF)
15:11:12.564609 221.1.220.199.12200 > CHAOTIC42IP.8090: S 1966272326:1966272326(0) win 8192 (DF)
15:11:12.671603 221.1.220.199.12200 > CHAOTIC42IP.1080: S 1966301967:1966301967(0) win 8192 (DF)
15:11:13.489275 221.1.220.199.12200 > CHAOTIC42IP.8118: S 1966420531:1966420531(0) win 8192 (DF)
15:11:13.661051 221.1.220.199.12200 > CHAOTIC42IP.8088: S 1966450172:1966450172(0) win 8192 (DF)
There are tons of these things. 231 in the last four hours and ten minutes. They're also pinging me.
Any idea what this is or anything I can do about it?