Portal Home > Knowledgebase > Articles Database > Port scans by pingdom
Port scans by pingdom
Posted by chukchuk, 04-05-2012, 07:51 AM |
Ok. SO I use pingdom to monitor my website. But the last few days I am getting emails from LFD informing of port scans and the IP reported is from pingdom.
Here is the contents of my csf.tempban
I checked /var/log/messages and it seems like it is scanning UDP ports.
I am only checking for HTTP connections so It should not do some port scanning. Anyone here experienced the same thing?
Last edited by chukchuk; 04-05-2012 at 07:57 AM.
|
Posted by Patrick, 04-05-2012, 09:09 AM |
That's very weird. We also use Pingdom and I can't say I've noticed any unusual port scans or anything of that nature from them. To be fair, that doesn't look like a port scan since it's using UDP and the ports are considered non-standard.
Have you sent them an email to ask?
|
Posted by plumsauce, 04-06-2012, 12:06 AM |
Notice that it is UDP.
UDP is easily spoofed because it is connectionless.
|
Posted by FastServ, 04-06-2012, 12:13 AM |
Looks like typical route optimizer probes. Nothing to worry about...
|
Add to Favourites Print this Article
Also Read