• Status: Solved
  • Priority: Medium
  • Security: Public
  • Views: 610
  • Last Modified:

Deciphering netstat output

When running the netstat command with the 'a' and 'n' options, the output includes numerous lines resembling the following:

udp        0      0  *.*                    *.*

What does this mean. I'm concerned about the sheer number of them (there are 945 such records). Is this a problem?
0
babyb00mer
Asked:
babyb00mer
1 Solution
 
joolsCommented:
looks like there may be a column missing from the output, I would have thought you should see the port numbers udp is listening on and they are probably related to services.

If it's linux try running netstat -taupen which will give a full list and the daemon associated with the port.
0
 
woolmilkporcCommented:
Hi,

these are probably UDP structures set aside by the kernel for communicating with application-layer servers, like nfsd, biod or automountd.

Is this an NFS server, and does it serve quite a bunch of active NFS mounts?

Find out how many NFS threads are running:

ps -Am -o pid,thcount,comm,args | grep -E "nfsd| biod"

(Please note the space in front of " biod"!)

Do the figures shown in the second column (roughly) correspond to the number of those UDP entries without a specific local address/port?
0

Featured Post

Prep for the ITIL® Foundation Certification Exam

December’s Course of the Month is now available! Enroll to learn ITIL® Foundation best practices for delivering IT services effectively and efficiently.

Tackle projects and never again get stuck behind a technical roadblock.
Join Now