Hi,
I am running a Sophos XG behind an other Firewall.
I am only allowing DNS connections to the DNS server, which I have configured in XG. Today I see a overwhelming mass of blocked attempts from the XG to connect to unknown IP addresses on Port 53/ Service DNS.
Since there are no Logs about these connections found in XG, and all connections to DNS from devices behind XG are blocked, there is actually some evidence that these connections are initiated from the XG it self.
Some of these IPs resolve to *.root-servers.net, others are not resolvable.
Is that a expected behaviour of XG?
I am running XG 18.0.1-MR1
Regards
Dwayne Parker
This thread was automatically locked due to age.