Portal Home > Knowledgebase > Articles Database > Port scans by pingdom


Port scans by pingdom




Posted by chukchuk, 04-05-2012, 07:51 AM
Ok. SO I use pingdom to monitor my website. But the last few days I am getting emails from LFD informing of port scans and the IP reported is from pingdom. Here is the contents of my csf.tempban I checked /var/log/messages and it seems like it is scanning UDP ports. I am only checking for HTTP connections so It should not do some port scanning. Anyone here experienced the same thing? Last edited by chukchuk; 04-05-2012 at 07:57 AM.

Posted by Patrick, 04-05-2012, 09:09 AM
That's very weird. We also use Pingdom and I can't say I've noticed any unusual port scans or anything of that nature from them. To be fair, that doesn't look like a port scan since it's using UDP and the ports are considered non-standard. Have you sent them an email to ask?

Posted by plumsauce, 04-06-2012, 12:06 AM
Notice that it is UDP. UDP is easily spoofed because it is connectionless.

Posted by FastServ, 04-06-2012, 12:13 AM
Looks like typical route optimizer probes. Nothing to worry about...



Was this answer helpful?

Add to Favourites Add to Favourites    Print this Article Print this Article

Also Read
amazon or vps.net (Views: 644)
Cold fusion reseller (Views: 682)
vivehosting down? (Views: 770)

Language: