[c-nsp] OSPF4-BAD-LENGTH

Eric Van Tol eric at atlantech.net
Thu Jul 3 07:45:10 EDT 2008


Hi all,
This isn't a question of what, but how :-)  We received this log on one of our 6509s last night:

Jul  3 06:04:40 EDT: %OSPF-4-BADLENGTH: Invalid length 34778 in OSPF packet type 39 from 218.106.119.133 (ID 244.193.1.14), GigabitEthernet1/5

This address has no direct connectivity with our network, as it appears to be from a Chinese network.  My question is how does an OSPF packet get through the general internet?  Or could this be more than likely just some sort of vulnerability scanner that is spoofing various protocols?

-evt


More information about the cisco-nsp mailing list