Robert E. Seastrom
rs at seastrom.com
Mon Dec 31 09:19:09 UTC 2007
"Robert E. Seastrom" <rs at seastrom.com> writes:
> Gregory Hicks <ghicks at cadence.com> writes:
>>> Date: Sun, 30 Dec 2007 21:42:21 -0500
>>> From: Michael Greb <mgreb at linode.com>
>>> I've got a user sending a lot of UDP traffic to 184.108.40.206 port 22.
>>> This traffic is very likely undesirable and I'd be willing to pull the
>>> plug immediately if I can get confirmation from DreamHost. Failing that
>> Port 22? Isn't that ssh? Doesn't ssh have the capability to forward X or
>> whatever via ssh?
> I'm with Gregory here. Between scp and port forwarding, there are
> plenty of explanations for lots of traffic on port 22. What exactly
> leads you to the conclusion that the traffic is "very likely
duh, UDP, not TCP. My bad. Yeah, this is a little bit weird.
More information about the NANOG