HacksNTweaks
MIS
Hi, y'all.
H/W: PIX 515E
S/W: 6.3(3)
I've recently been receiving the following syslog message:
%PIX-2-106013: Dropping echo request from 198.105.77.1 to PAT address 198.110.147.217
where the "from" address sweeps sequentially through the 198.105.77.x range (.1 - .254, where hosts are powered on)and the "to PAT address" changes for each sweep where only the first octet remains constant.
The sweep occurs about 6 to 10 times per hour. I've run a sniffer trace on that subnet, but noticed no unusual traffic, nor any ICMP echo requests corresponding to the syslog!
Any ideas are much appreciated.
HnT
There are 10 types of people in the world. Those who understand binary, and those who don't.
H/W: PIX 515E
S/W: 6.3(3)
I've recently been receiving the following syslog message:
%PIX-2-106013: Dropping echo request from 198.105.77.1 to PAT address 198.110.147.217
where the "from" address sweeps sequentially through the 198.105.77.x range (.1 - .254, where hosts are powered on)and the "to PAT address" changes for each sweep where only the first octet remains constant.
The sweep occurs about 6 to 10 times per hour. I've run a sniffer trace on that subnet, but noticed no unusual traffic, nor any ICMP echo requests corresponding to the syslog!
Any ideas are much appreciated.
HnT
There are 10 types of people in the world. Those who understand binary, and those who don't.