Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    5353 on empty LAN

    Scheduled Pinned Locked Moved General pfSense Questions
    7 Posts 3 Posters 744 Views 3 Watching
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • AndyRHA Offline
      AndyRH
      last edited by

      I have no devices on LAN, but I see traffic on the graph so I did a capture and found this:

      14:46:56.033876 IP 192.168.129.1.5353 > 224.0.0.251.5353: UDP, length 41
      14:46:56.034270 IP 192.168.129.1.5353 > 224.0.0.251.5353: UDP, length 120
      14:46:56.034505 IP 192.168.129.1.5353 > 224.0.0.251.5353: UDP, length 131
      14:46:56.034999 IP 192.168.129.1.5353 > 224.0.0.251.5353: UDP, length 125

      Any reason why the FW is doing this?
      Another empty VLAN has no traffic.

      More of a curiosity than a problem.

      Thank you,

      o||||o
      7100-1u

      M 1 Reply Last reply Reply Quote 0
      • M Away
        mcury Rebel Alliance @AndyRH
        last edited by

        @andyrh Maybe that is avahi package ?

        dead on arrival, nowhere to be found.

        AndyRHA 1 Reply Last reply Reply Quote 0
        • AndyRHA Offline
          AndyRH @mcury
          last edited by

          @mcury It is installed. Just odd it is only on 1 VLAN.

          o||||o
          7100-1u

          M 1 Reply Last reply Reply Quote 0
          • M Away
            mcury Rebel Alliance @AndyRH
            last edited by

            @andyrh A long time I don't use avahi..
            Now I'm mapping my printers directly through the IP..
            I don't like the idea of one VLAN seeing what is available in the other..
            Not sure if everyone would agree with me on this, but as I see it, it could lead to vulnerability reconnaissance..

            dead on arrival, nowhere to be found.

            NogBadTheBadN 1 Reply Last reply Reply Quote 0
            • NogBadTheBadN Offline
              NogBadTheBad @mcury
              last edited by

              @mcury its multicast dns.

              Andy

              1 x Netgate SG-4860 - 3 x Linksys LGS308P - 1 x Aruba InstantOn AP22

              M 1 Reply Last reply Reply Quote 0
              • M Away
                mcury Rebel Alliance @NogBadTheBad
                last edited by mcury

                @nogbadthebad Yeap, mDNS..
                Avahi can mirror mDNS from one VLAN to the other, and I don't like this behavior..
                In a home use, it's nice to have, you would be able to cast to a chromecast in another VLAN, printers auto discovery and things like that.

                dead on arrival, nowhere to be found.

                AndyRHA 1 Reply Last reply Reply Quote 0
                • AndyRHA Offline
                  AndyRH @mcury
                  last edited by

                  Not all of the interfaces were selected so it was re-broadcasting only on a few interfaces.

                  Thanks for the push in the right direction.

                  o||||o
                  7100-1u

                  1 Reply Last reply Reply Quote 0
                  • First post
                    Last post
                  Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.