|
|
Question : Alert from SonicWall Intrusion Prevention IP spoof dropped
|
|
|
|
We've got a class c network with range 192.168.67.xxx Since we installed the sonicwall we get alerts of category Intrusion prevention.
# Time Priority Category Message Source Destination Notes Rule 1 05/17/2010 11:58:01.288 Alert Intrusion Prevention IP spoof dropped 169.254.108.176, 137, X0 192.168.67.2, 137, X0 MAC address: 00:19:b9:d3:5c:39
How we can see is the source ip from an other network and from plug X0 (LAN). I already looked for something like a router but can't find anything like that.
What can I do for the analysis of this issue?
|
|
|
|
Answer : Alert from SonicWall Intrusion Prevention IP spoof dropped
|
|
I think we posted simultaneously. Try to disable the NIC if isn't doing anything. That route is added automatically. Disabling the NIC should remove it.
|
|
|
|