Ethereal-users: RE: [Ethereal-users] UDP to 224.0.0.103
Note: This archive is from the project's previous web site, ethereal.com. This list is no longer active.
Scott has definitely given you a pointer in the right
direction. The multicast address and destination UDP port both point to MDAP (as
are recorded by IANA). The curious thing is that there is basically no info to
be found on this protocol (Google doesn't turn up anything beyond the assignment
and the assignee,Johan Deleu of Alcatel, so I wonder who is actually
implementing it. I think the Microsoft / Outlook suggestionis spurious - I can't
see why Outlook would want to use multicast to access directories - it can
perfectly well directly connect to the Exchange server or Active Directory in a
standard environment.
Normally multicasts won't go past your local network -
unless multicast is explicitly configured in your routers. That is, it isn't
going to go on the internet or anything outside you local LAN unless someone has
configured this to happen.
If you haven't installed software that seems to match the
"MDAP" description , I wonder if some trojan/bot software has stolen the
assigned ranges and is using it for its own purpose? (This also is just
speculation ;-) )
Regards, Martin Martin Visser ,CISSP 3 Richardson Place This email (including any attachments) is intended only for the use of the individual or entity named above and may contain information that is confidential, proprietary or privileged. If you are not the intended recipient, please notify HP immediately by return email and then delete the email, destroy any printed copy and do not disclose or use the information in it. From: ethereal-users-bounces@xxxxxxxxxxxx [mailto:ethereal-users-bounces@xxxxxxxxxxxx] On Behalf Of Scott Lowrey Sent: Tuesday, 29 March 2005 9:07 AM To: Ethereal user support Subject: Re: [Ethereal-users] UDP to 224.0.0.103 Is Outlook running? Roger Almstedt wrote:
--
Scott Lowrey Test Engineering Manager NexTone Communications Gaithersburg, Maryland USA 1.240.912.1369 |
- Prev by Date: Re: [Ethereal-users] UDP to 224.0.0.103
- Next by Date: [Ethereal-users] Capture filters work on Solaris, but not AIX or Linux?
- Previous by thread: SV: [Ethereal-users] UDP to 224.0.0.103
- Next by thread: [Ethereal-users] Capture filters work on Solaris, but not AIX or Linux?
- Index(es):
- Get Wireshark
- Download
- Code of Conduct