PfSense firewall log spammed



  • Hello,

    Last two weeks my firewall log is spammed.
    Mainly on port 18724 TCP/UDP.
    Any idea what that could be?



  • If I had to guess – I would guess BitTorrent.


  • Netgate Administrator

    Or Skype running on an internal client.

    Steve



  • I would say bit torrent as well.

    One thing you could do is add an alias for hosts and add all those hosts to that alias and set up a block rule, this way they would get blocked but not logged (so you longs will not get spammed any more)

    Another option is to install a package such as IPBlock List or Country Block and block them that way. Country Block works great to block other country IP addresses, but it wont work if you need other countries to access your resources.


Log in to reply