dug a little for this but didn't get much.
I have a pfSense boxes, CARP configuration. MASTER was caught in snort sending to 255.255.255:69 via the WAN interface IP. Has only happened twice (that we know of) yesterday and this morning @ 8:00am.
Thoughts?