We recently updated to 18.107.2 and changed our client tracking from MAC to IP.  Now I am seeing a steady stream of UDP traffic over WAN 2 via wireshark.  Is there a way to tell which client is using WAN 2?  The primary is WAN 1 and WAN 2 just being used as a failover.  We did have some flow preferences to try to send the guest wifi subnets over WAN 2 but it never worked.  Packet capture is just a steady UDP stream with ICMP sprinkled in.




With a packet capture.



Note: ICMP traffic is not subject to traffic shaping rules. As a result, Flow Preference will have no impact on ICMP traffic.




Thanks for taking the blinders off. Ran on MX LAN port vs WAN.  Found the culprit.  

