I am seeing a lot of entries like the ones shown below for various IPs. Should this traffic be allowed? If so, what service should be used?
16:23:05 Default DROP TCP 63.202.115.*** : 45372 → 4.71.104.187 : 80 [ACK] len=40 ttl=64 tos=0x00
16:23:05 Default DROP TCP 63.202.115.*** : 49587 → 8.7.28.147 : 80 [ACKFIN ] len=52 ttl=64 tos=0x00
16:23:06 Default DROP TCP 63.202.115.*** : 45372 → 4.71.104.187 : 80 [ACKFIN ] len=40 ttl=64 tos=0x00
Running ASG 220 with the HTTP proxy enabled in transparent mode.
This thread was automatically locked due to age.