PfSense WAN Interface traffic to 255.255.255.255:69 (TFTP)



  • dug a little for this but didn't get much.

    I have a pfSense boxes, CARP configuration.  MASTER was caught in snort sending to 255.255.255:69 via the WAN interface IP.  Has only happened twice (that we know of) yesterday and this morning @ 8:00am.

    Thoughts?