Regular UDP traffic is DNS which is normaly on port 53 but not always (some linux based mail servers use random ports for DNS - I don't know why and how exactly).
UDP port 1434 is related to the latest SQL worm and should normaly be blocked.
UDP port 137 is for Netbios and should be blocked - but you will get probes on that ports regulary.
A common pix configuration will block all inbound UDP traffic, and will permit outbound UDP traffic to port 53 unless any outbound traffic is permitted (the default implicit outbound rule).
This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
By continuing to use this site, you are consenting to our use of cookies.