Subject: Re: system listens strange port when bind starts
To: None <ish@computel.ru>
From: Steven M. Bellovin <smb@research.att.com>
List: tech-security
Date: 02/22/2002 10:34:53
In message <3C764FB9.4DAFD94D@computel.ru>, ish@computel.ru writes:
>Colleagues!
>
>I just downloaded and installed the NetBSD 1.5.2 /i386.
>The BIND 8.2.3 is bundled, so I enabled it as is and set up the zone.
>The actual NetBSD machine is installed in network with reserved
>addresses (192.168...)
>
>Q1: Named listens for the non standard port such as 56147 or 64930.
>I restarted named several time and notice ports in the range between
>5000 and 7000.
>What is it?

That's the port that bind uses for sending its own queries.  Port 53 is 
what is uses to accept queries from others.
>



		--Steve Bellovin, http://www.research.att.com/~smb
		Full text of "Firewalls" book now at http://www.wilyhacker.com