I am getting SYN Flood attacks from my Windows Messenger/Messenging server. Does anyone know what could be causing this? Is this a false detection caused by Messenger or something I have to worry about. When the flood happens, it triggers an IDS event which locks users out of Messenger for 10 minutes.
This is not happenning on all machines and is not very consistant.
Any help would be appreciated.
This is not happenning on all machines and is not very consistant.
Any help would be appreciated.