<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[Firewall + Summary view - i need help to understand the &quot;cake&quot;]]></title><description><![CDATA[<p dir="auto">Hi</p>
<p dir="auto">I dont understand the "picture"...???</p>
<p dir="auto">This cake graph is from Firewall + Summary view.</p>
<p dir="auto">What is going on here, can anyboady explain how to understand this graph:</p>
<p dir="auto"><img src="/assets/uploads/files/1544657902165-7d066e44-8860-47be-a3f1-8d1a8e14932b-image.png" alt="0_1544657902690_7d066e44-8860-47be-a3f1-8d1a8e14932b-image.png" class=" img-fluid img-markdown" /></p>
]]></description><link>https://forum.netgate.com/topic/138658/firewall-summary-view-i-need-help-to-understand-the-cake</link><generator>RSS for Node</generator><lastBuildDate>Tue, 21 Apr 2026 00:48:49 GMT</lastBuildDate><atom:link href="https://forum.netgate.com/topic/138658.rss" rel="self" type="application/rss+xml"/><pubDate>Wed, 12 Dec 2018 23:41:03 GMT</pubDate><ttl>60</ttl><item><title><![CDATA[Reply to Firewall + Summary view - i need help to understand the &quot;cake&quot; on Fri, 14 Dec 2018 14:17:51 GMT]]></title><description><![CDATA[<p dir="auto">Windows boxes out of the box are going to be Noisy little bastards.. And even if your not using IPv6 are going to put a lot of NOISE on the network via ipv6</p>
<p dir="auto">You have a few options<br />
Just ignore it and live with the log spam<br />
Set firewall not to log the noise<br />
Configure your client boxes to not send out so much ipv6 noise when your not using ipv6 - with windows easy way is to just disable it..  Take a look here for what option best suites your needs.<br />
https://support.microsoft.com/en-us/help/929852/guidance-for-configuring-ipv6-in-windows-for-advanced-users</p>
]]></description><link>https://forum.netgate.com/post/811205</link><guid isPermaLink="true">https://forum.netgate.com/post/811205</guid><dc:creator><![CDATA[johnpoz]]></dc:creator><pubDate>Fri, 14 Dec 2018 14:17:51 GMT</pubDate></item><item><title><![CDATA[Reply to Firewall + Summary view - i need help to understand the &quot;cake&quot; on Fri, 14 Dec 2018 14:05:58 GMT]]></title><description><![CDATA[<p dir="auto">To track down IPv6 clients, first look in the actual firewall log to get the address, then look in <strong>Diagnostics &gt; NDP Table</strong> to find the client's MAC address (if it's online/active then). After that you can use the MAC to find it on your DHCP v4 leases and maybe find a hostname, or look it up in your switch if you have a managed switch to find the port it's on, or in your AP to find the client name.</p>
<p dir="auto">Look at the log entries first, though. It's probably not anything worth worrying about, probably local multicast traffic from clients trying to find things on the local network.</p>
]]></description><link>https://forum.netgate.com/post/811203</link><guid isPermaLink="true">https://forum.netgate.com/post/811203</guid><dc:creator><![CDATA[jimp]]></dc:creator><pubDate>Fri, 14 Dec 2018 14:05:58 GMT</pubDate></item><item><title><![CDATA[Reply to Firewall + Summary view - i need help to understand the &quot;cake&quot; on Fri, 14 Dec 2018 13:57:29 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/jimp">@<bdi>jimp</bdi></a> said in <a href="/post/811059">Firewall + Summary view - i need help to understand the "cake"</a>:</p>
<blockquote>
<p dir="auto">it's probably normal traffic that your rules are</p>
</blockquote>
<p dir="auto">Thanks.<br />
So this is IP6, i was trying to install only ip4.</p>
<p dir="auto">Where should i start to look if i want to find the source for the logged traffic?</p>
]]></description><link>https://forum.netgate.com/post/811201</link><guid isPermaLink="true">https://forum.netgate.com/post/811201</guid><dc:creator><![CDATA[Modesty]]></dc:creator><pubDate>Fri, 14 Dec 2018 13:57:29 GMT</pubDate></item><item><title><![CDATA[Reply to Firewall + Summary view - i need help to understand the &quot;cake&quot; on Thu, 13 Dec 2018 19:42:38 GMT]]></title><description><![CDATA[<p dir="auto">It's an analysis of the firewall log. Of the items in the firewall log, the addresses shown account for the indicated percentage of log entries.</p>
<p dir="auto">That looks like mostly IPv6 link-local traffic, so it's probably normal traffic that your rules are set to log for one reason or another.</p>
]]></description><link>https://forum.netgate.com/post/811059</link><guid isPermaLink="true">https://forum.netgate.com/post/811059</guid><dc:creator><![CDATA[jimp]]></dc:creator><pubDate>Thu, 13 Dec 2018 19:42:38 GMT</pubDate></item></channel></rss>