Endpoint Protection

 View Only
  • 1.  net threat traffic log newbie

    Posted May 10, 2014 06:10 PM

    All of a sudden URLs were loading much more s..l..o..w..l..y so I went into the Network Threat Protection Traffic Log to see what I could see.  I expected to find incoming and outgoing traffic to and from my comcast router but instead I found incoming traffic more than 75 different  remote hosts (about half from *.stanford.edu) using ICMP protocol yet all from the same remote MAC address. I'm a newbie at this so I'm not sure what I'm seeing.  Can anyone point me in the right direction to learn more about this?  Thanks.



  • 2.  RE: net threat traffic log newbie

    Posted May 12, 2014 01:34 PM

    Can you post the log for review?

    It could be a single device (router) doing some sort of discovery.