Results 1 to 4 of 4
  1. #1
    Untangler
    Join Date
    Jan 2011
    Posts
    94

    Default All traffic stopped

    So, yesterday at just after 1am the number of threats detected and or blocked went to 0 and has been 0 ever since. For years this figure has been around 1 to 5 detections / blocks per minute 24/7.

    My question is have all cyber criminals just called Uncle and quit, or is something else going on ? All other traffic on my networks looks normal...

  2. #2
    Newbie
    Join Date
    Mar 2019
    Posts
    4

    Default

    The same exact thing happened to my Intrusion Detection at Noon on Tuesday, just suddenly stopped logging anything in the Intrusion Detection module and the graph looks like a cliff. I had to reboot in order to get it to start working again, its been fine since. I didnt post as I thought I may just be an isolated incident, apparently not.

    Looking at the IP's that were most active are below coming from the same ISP in SoCal. After looking further others have reported port scans coming from the same addy's shortly before my Intrusion Detection went "offline"

    Distributed port scan using six different ip addresses. Checking every port with multiple protocols. 45.129.33.14, 45.129.33.41, 45.129.33.43, 45.129.33.60, 45.129.33.121, 45.129.33.122
    Last edited by Torkamata; 12-12-2020 at 02:31 PM.

  3. #3
    Untangler
    Join Date
    Jan 2011
    Posts
    94

    Default

    Rebooted, no change, still 0 events...

    Anyone from the Untangle team care to comment ?

  4. #4
    Untangler
    Join Date
    May 2008
    Posts
    426

    Default

    Press the help button on the right and start a ticket.

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •  

SEO by vBSEO 3.6.0 PL2