This just happened on our MX 100, and lasted about 15 minutes, blocking or dropping almost all DNS traffic to 8.8.8.8 and 1.1.1.1, which, of course, brought most internet and email connectivity to a standstill. Looking back through the last few weeks logs, this has been happening sporadicially for the past 30 days, but nothing like the volume of traffic flagged this morning.
Source IP: <redacted>, Source Port: 51406, Destination IP: 8.8.8.8 « hide
Destination Port | 53 |
Protocol | UDP |
Block Type | DNS |
NBAR ID | 67 |
Classification | eDonkey |
Layer 7 firewall rule | Deny |
MX 18.107.2