Hi, For our NetFlow Data, there is a Red Flag appearing corresponding to one of the Network Devices. This is a VPN Box and all traffic towards this box is ESP, GRE and TCP (Port 1723), UDP (Port 500).
When I take the mouse over this Red Flag, it comes up with the info "High Risk". Back traffic on this list says that it is due to "Duplicate MAC Address", I am pretty sure that there is no duplicate address involved. Can there be any other reason for this flag ? Regards \\ Naman _______________________________________________ Ntop mailing list [EMAIL PROTECTED] http://listgateway.unipi.it/mailman/listinfo/ntop
