IDNetters Forums

Technical News & Discussion => Networking & Routers => Topic started by: Cookie on Mar 11, 2011, 10:19:52

Title: Port scans
Post by: Cookie on Mar 11, 2011, 10:19:52
Over the last couple of weeks the following message has been appearing in my router log (NETGEARDG834):

TCP Packet - Source:58.218.199.147 Destination:XX.XX.X.XXX - [PORT SCAN]

Is this something I need to worry about?  The source address appears to originate in Beijing.

Thanks

Martin
Title: Re: Port scans
Post by: Rik on Mar 11, 2011, 10:31:34
No need to worry, Martin, that's just the firewall telling you it's done its job. Have you got your router in stealth mode, ie not responding to ICMP traffic (pings)? That will help limit the number of people looking at your router.
Title: Re: Port scans
Post by: esh on Mar 11, 2011, 10:42:03
11am-3pm every Monday we usually get the usual Chinese brute force attack on all the machines at once. Stops just like that, dead on time.
Title: Re: Port scans
Post by: Rik on Mar 11, 2011, 10:44:14
Very efficient, the Chinese. ;D
Title: Re: Port scans
Post by: Cookie on Mar 11, 2011, 10:53:46
Quote from: Rik on Mar 11, 2011, 10:44:14
Very efficient, the Chinese. ;D

Rik,

All part of their plan for world domination I expect :).  The check box marked 'Respond to Ping on Internet WAN Port' in my router settings is unchecked, so I guess I'm safe.

Thanks

Martin

Title: Re: Port scans
Post by: Rik on Mar 11, 2011, 11:08:33
You are. :)