[159138] in North American Network Operators' Group
Re: Hurricane Electric Tunnelbroker staff?
daemon@ATHENA.MIT.EDU (Ben Carleton)
Sun Dec 23 17:15:53 2012
Date: Sun, 23 Dec 2012 17:15:44 -0500
From: Ben Carleton <ben@bencarleton.com>
To: nanog@nanog.org
In-Reply-To: <50D69747.2060806@bencarleton.com>
Errors-To: nanog-bounces+nanog.discuss=bloom-picayune.mit.edu@nanog.org
On 12/23/2012 12:31 AM, Ben Carleton wrote:
> Hi folks,
>
> I am seeing an IPv6-connected host on my network (which is on a HE.net
> tunnel) apparently being portscanned by an HE server at
> 2001:470:0:64::2 for about the last hour or so. It is trying to hit
> several different ports four times each before moving on and
> eventually repeating itself.
>
> If anyone from HE can shed some light on what's going on here it would
> be greatly appreciated, I can provide the IP of the host in question
> off-list if needed.
>
> Thanks,
> -- Ben
>
Thank you to everyone who responded on and off-list, we've got this
resolved.
-- Ben