Hi All,
I cannot figure out what device the two MAC addresses belong to, however
this traffic is constantly
going down my link. See a small dump at the end of the email.
Can anyone help me out here ? I am totally stumped.
It is all logged on the internal interface of the router, which also
contains a netjet isdn card.
The ethernet interface's MAC is not one of these two.
All arp lookups I have done on the local net have been without success.
15:06:50.209304 3:0:3d:d0:0:f5 0:60:97:a1:49:ff eb21 60:
4500 0028 7fa1 4000 3f06 78bf d20f e843
cf2e b9ed 0fe0 0050 e352 224c bc44 cc94
5010 7d78 5044 0000 7e7e 7e7e 7e7e
15:06:50.209304 3:0:3d:d0:0:f5 0:60:97:a1:49:ff ec21 60:
4500 0028 7fa2 4000 3f06 78be d20f e843
cf2e b9ed 0fe0 0050 e352 224c bc44 cc94
5011 7d78 5043 0000 7e7e 7e7e 7e7e
15:06:50.379304 3:0:3d:d0:0:f5 0:60:97:a1:49:ff ed21 74:
4500 003c 7fba 4000 3f06 7892 d20f e843
cf2e b9ed 0fe3 0050 e3e3 3806 0000 0000
a002 7d78 46b4 0000 0204 05b4 0402 080a
0195 12b9 0000
15:06:50.519304 3:0:3d:d0:0:f5 0:60:97:a1:49:ff ee21 1001:
4500 03db 1494 4000 7f06 726a d20f e85d
cba6 eb0a 0050 05bb 003a 3898 01a5 bf18
5018 1fd5 570e 0000 3c61 2068 7265 663d
222e 2e2f 6f72
15:06:50.649304 3:0:3d:d0:0:f5 0:60:97:a1:49:ff ef21 60:
4500 002c 1594 4000 7f06 7519 d20f e85d
cba6 eb0a 0050 05bc 003a 1208 01a5 cd97
6012 2238 1d35 0000 0204 05b4 05b4
Regards,
Greg.
-
[To unsubscribe, send mail to [EMAIL PROTECTED] with
"unsubscribe firewalls" in the body of the message.]