Hello friends,
I think I have an invisible threat on my network and I am wondering if someone could help me.
I have a high bandwidth usage and very high memory usage on one of my servers that I can see on my UTM.
The thing is when I see logging and reporting-->Network protection-->Firewall I can see some IPs from Austria that is using some tcp services with customize ports.Is there any way to disconnect them.
Also I have a high number of violations in Firewall daily.
I used Country Blocking traffic for Austria.Also except well-known services there is no other port open on my UTM Firewall.
Any advice or idea would be highly appreciated.
Thank you.
This thread was automatically locked due to age.