We see here in our Cisco netflow data quite a large amount of data coming from 412/tcp (about 20 gbyte/day, about 1/8 of our http data). It seem to me that the official use, synoptics-trap, isn't that used, or am I wrong. Does anyone know what they transport on this port ? TIA -- guido ---------------------------------------------------------------------------- This list is provided by the SecurityFocus ARIS analyzer service. For more information on this free incident handling, management and tracking system please see: http://aris.securityfocus.com
This archive was generated by hypermail 2b30 : Wed Apr 24 2002 - 09:16:47 PDT