I've noticed there's a very nice (~sinusoidal) correlation in background activity on one of my (idling) pfSense firewalls in the rrd graph.
I interpret it that most of the malware scans are local, it must clearly be infected user machines which are switched off for the night. -- Eugen* Leitl <a href="http://leitl.org">leitl</a> http://leitl.org ______________________________________________________________ ICBM: 48.07100, 11.36820 http://www.ativel.com http://postbiota.org 8B29F6BE: 099D 78BA 2FD3 B014 B08A 7779 75B0 2443 8B29 F6BE
