[83800] in North American Network Operators' Group
Re: A useful oversimplification for network surveillance?
daemon@ATHENA.MIT.EDU (Fergie (Paul Ferguson))
Thu Aug 25 13:49:06 2005
From: "Fergie (Paul Ferguson)" <fergdawg@netzero.net>
Date: Thu, 25 Aug 2005 17:43:39 GMT
To: sjk@cupacoffee.net
Cc: nanog@merit.edu
Errors-To: owner-nanog@merit.edu
Also, this seems like a good time to mention a couple of
additionl resources on trending specific TCP and UDP port
probes (if you haven't already seen them):
http://www.dshield.org/
http://www.mynetwatchman.com/
- ferg
-- sjk <sjk@cupacoffee.net> wrote:
We are an ISP - we look for specific trending data to help pinpoint new
potential virus and malware which can adversley effect transit links or
equiptment.
--
"Fergie", a.k.a. Paul Ferguson
Engineering Architecture for the Internet
fergdawg@netzero.net or fergdawg@sbcglobal.net
ferg's tech blog: http://fergdawg.blogspot.com/