firewall

From: alfonso Albouquerque (kovalik@uiuc.edu)
Date: 02/20/03


From: "alfonso Albouquerque" <kovalik@uiuc.edu>
Date: Thu, 20 Feb 2003 08:01:30 -0800


hi,
i've loaded a firewall into my computer. it blocks the
entries. i don't understand something, if anyone knows,
please explain what is the meaning of UDP port 1309, 1275,
1158. all the intruders are seems related with Uiuc, which
is my server. for example, one of them, source DNS
argus.cso.uiuc.edu and destination DNS is desert-
29.slip.uiuc.edu.what is this? do you think this is the
action of intrusion or is a regular activity that i should
trust (it happens nearly once in a minute)

thank you very much in advance

Alfonso