Help this ignoramus understand his netgear admin log.
I can understand most of what's going on in the log. But then there's this jargon in the middle that I don't understand. Who are RIPE? Who are APNIC? Who's Len? Why is he 470? What are they doing in my netgear's log?
03:40:12 [DOS]IN=ppp0 OUT= MAC= SRC=221.208.208.104 DST=**.**.**.*** LEN=490 TOS=0x00 PREC=0x00 TTL=40 ID=0 DF PROTO=UDP SPT=32976 DPT=1027 LEN=470
05:42:52 [DOS]IN=ppp0 OUT= MAC= SRC=221.208.208.104 DST=**.**.**.*** LEN=490 TOS=0x00 PREC=0x00 TTL=40 ID=0 DF PROTO=UDP SPT=32988 DPT=1027 LEN=470
07:03:46 [DOS]IN=ppp0 OUT= MAC= SRC=61.180.228.244 DST=**.**.**.*** LEN=485 TOS=0x00 PREC=0x00 TTL=42 ID=0 DF PROTO=UDP SPT=38005 DPT=1027 LEN=465
08:25:14 [DOS]IN=ppp0 OUT= MAC= SRC=221.208.208.104 DST=**.**.**.*** LEN=490 TOS=0x00 PREC=0x00 TTL=40 ID=0 DF PROTO=UDP SPT=32988 DPT=1027 LEN=470
09:05:21 [DOS]IN=ppp0 OUT= MAC= SRC=221.208.208.104 DST=**.**.**.*** LEN=490 TOS=0x00 PREC=0x00 TTL=40 ID=0 DF PROTO=UDP SPT=32988 DPT=1027 LEN=470
11:07:32 [DOS]IN=ppp0 OUT= MAC= SRC=221.208.208.104 DST=**.**.**.*** LEN=490 TOS=0x00 PREC=0x00 TTL=40 ID=0 DF PROTO=UDP SPT=32990 DPT=1027 LEN=470
11:10:54 [DOS]IN=ppp0 OUT= MAC= SRC=62.56.99.198 DST=**.**.**.*** LEN=48 TOS=0x00 PREC=0x00 TTL=125 ID=8041 DF PROTO=TCP SPT=1141 DPT=445 WINDOW=16384 RES=0x00 SYN URGP=0
11:10:57 [DOS]IN=ppp0 OUT= MAC= SRC=62.56.99.198 DST=**.**.**.*** LEN=48 TOS=0x00 PREC=0x00 TTL=125 ID=8354 DF PROTO=TCP SPT=1135 DPT=445 WINDOW=16384 RES=0x00 SYN URGP=0
11:10:57 [DOS]IN=ppp0 OUT= MAC= SRC=62.56.99.198 DST=**.**.**.*** LEN=48 TOS=0x00 PREC=0x00 TTL=125 ID=8355 DF PROTO=TCP SPT=1136 DPT=445 WINDOW=16384 RES=0x00 SYN URGP=0
11:10:57 [DOS]IN=ppp0 OUT= MAC= SRC=62.56.99.198 DST=**.**.**.*** LEN=48 TOS=0x00 PREC=0x00 TTL=125 ID=8356 DF PROTO=TCP SPT=1138 DPT=445 WINDOW=16384 RES=0x00 SYN URGP=0
11:10:57 [DOS]IN=ppp0 OUT= MAC= SRC=62.56.99.198 DST=**.**.**.*** LEN=48 TOS=0x00 PREC=0x00 TTL=125 ID=8357 DF PROTO=TCP
Finally, am I such an ignoramus that I've posted anything that could compromise my computer's security?
RIPE is the regional internet registry for Europe, based in Amsterdam. APNIC is the regional internet registry for Asia Pacific, based in Australia.
ARIN is North America, LACNIC is Latin America, JAPNIC is Japan, AFRINIC is Africa.
They're the folks who are responsible for deciding who gets to use particular blocks of IPs, so as to make sure there are no duplicates anywhere in the world.
posted by Steven C. Den Beste at 4:08 PM on May 28, 2006