Robert E. Seastrom rs at seastrom.com
Mon Dec 31 09:12:28 UTC 2007

Gregory Hicks <ghicks at cadence.com> writes:

>> Date: Sun, 30 Dec 2007 21:42:21 -0500
>> From: Michael Greb <mgreb at linode.com>
>> I've got a user sending a lot of UDP traffic to port 22.
>> This traffic is very likely undesirable and I'd be willing to pull the
>> plug immediately if I can get confirmation from DreamHost.  Failing that
> Port 22?  Isn't that ssh?  Doesn't ssh have the capability to forward X or 
> whatever via ssh?

I'm with Gregory here.  Between scp and port forwarding, there are
plenty of explanations for lots of traffic on port 22.  What exactly
leads you to the conclusion that the traffic is "very likely


