I had a weird occurrence yesterday. I had the following entry in the web security usage report
It is at the bottom, the "anonymous" access... I only have two clients on my network. No pinholes in the FW (no inbound rules). Here is the second very strange occurrence that was from Taiwan! :
Which showed access to the SMTP service. Now I only have the SMTP proxy activated in order to receive notifications. I do not have a relay or smtp server for that matter. This is disturbing to say the least... I took measures to turn off the SMTP proxy in the mean time and I am watching my network a little more closely than usual. Does anyone know how/why this is happening. Especially if I don't have any external access to my FW...
BTW: I did a 'Whoisip" on the ip and found it going to here:
OrgName: Asia Pacific Network Information Centre
OrgID: APNIC
Address: PO Box 2131
City: Milton
StateProv: QLD
PostalCode: 4064
Country: AU
ReferralServer: whois://whois.apnic.net
NetRange: 219.0.0.0 - 219.255.255.255
CIDR: 219.0.0.0/8
NetName: APNIC5
NetHandle: NET-219-0-0-0-1
Regards
Jazzie
This thread was automatically locked due to age.