It's *supposed* to be used for the "Presence Information Protocol"... which
is used by services like Ding! to sense if someone is actively online. See
http://sunsite.cnlab-switch.ch/ftp/mirror/internet-drafts/draft-aggarwal-pip
-reqts-00.txt for more specifics. In all likelihood, the scans you're
seeing aren't malicious in intent.
--Bill Fox
----- Original Message -----
From: Nerijus Krukauskas <[EMAIL PROTECTED]>
To: Firewalls mailing list <[EMAIL PROTECTED]>
Sent: Friday, June 11, 1999 3:38 AM
Subject: TCP port 321
>
> Hi,
>
> Anybody knows what for is tcp/321 used? Seems like we've got some scans
> on this port.
>
> Thanks in advance.
>
> --
> Nerijus Krukauskas
> [EMAIL PROTECTED]
-
[To unsubscribe, send mail to [EMAIL PROTECTED] with
"unsubscribe firewalls" in the body of the message.]