1
General Discussion / Re: Suricata detecting outbound SNMP on WAN interface
« on: January 11, 2022, 06:24:57 pm »Windows stalking a HP printer over VPN?
I don't think so. Traffic to private IP ranges should be blocked by the firewall from leaking out onto the WAN (and I know I have those rules in place to do so), so this shouldn't be traffic coming from any LAN. It has to be generated by opnsense itself and it seems to be originating right at the WAN port. I'm running on bare metal so there is no hypervisor or host that could be doing this, either.
pmhausen, I'll try the tcpdump command later today after the workday.