This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Sophos XG home - Amazon Fire sticks - Continual WAN usage after stream stopped

I have been using the Sophos XG home license at home for over 8 months. I got it initially because I was planning on getting an XG 310 at work and since have.

 

Starting about 6 months ago I have been getting repeated notices from my ISP (Comcast) that I am about to go over my 1tb bandwidth for the month. Only thing I seem to be able to find is WAN download traffic on the System Graphs with no internal traffic to match. No reports show the traffic.

After about 3 months of off and on troubleshooting that couldn't repeat the issue I gave up. 2-3 months ago just before we bought the unit for work I stayed home all day to try and tackle this as I didn't want to have this issue at work. By the end of the day I figured out what I was doing right as the issue started each time. I was streaming off of one of my Amazon fire sticks. I finally figured out the cause and can repeat it any time I want. (ps I have 2 fire sticks that I can do this with.)

Now that I know the cause I have done tons of googling and log reviews but I can't seem to figure this one out.

 

One item I find very weird. If I unplug the fire stick and plug it in then no more WAN usage until a video stream is started. If I block the device for a few minutes the traffic stops but starts again once the block is removed.

 

Hope someone out there has a thought on what this could be.

 

Items tried:

  • FW OS reinstall
  • UniFi switch/APs resetup from scratch
  • AV,IPS,filtering on or off and various different setting over the months.
  • All FW updates applied as soon as I saw them.
  • Replaced FW dual nic with supported Intel instead of non Intel (forgot the model)


This thread was automatically locked due to age.
  • Hi,

    unplugging or putting temporary firewall rules in-place does not allow the connection to time out. One solution is to create each device a clienteles user and then change the status of the user, this will drop the connections until you start a new video stream.

    So basically you need to workout a way of stopping the video streams on the devices when you have finished watching a video o the connection is reset. Are you able to create logon on each device so that you can logoff and cause the connection  to terminate?

    Ian