abnormal udp traffic detected, source port is zero, DROP (port53)
All Replies
-
So its blocked what are you trying to do? stop it logging the block?0
-
yep,
I dont know why I'm alerted if my port is closed (and Log denied traffic is set to no)
0 -
Its logging due to it being set in security policy > ADP > profile tab
0 -
Hi @ktv
Those logs were generated by UDP abnormal traffic protection of ADP.
So, even you disable DNS UDP port 53 session on security policy, those similar log messages still can be seen.
If you don’t want to see them you may navigate Configuration > Security Policy > ADP and set "Traffic Anomaly", "Protocol Anomaly" Log to “no”.
Hope this can help you.
Share your feedback through our survey, make your voice heard, and win a WiFi 7 AP! https://bit.ly/2024_Survey_Community
0
Categories
- All Categories
- 415 Beta Program
- 2.4K Nebula
- 145 Nebula Ideas
- 96 Nebula Status and Incidents
- 5.6K Security
- 240 USG FLEX H Series
- 268 Security Ideas
- 1.4K Switch
- 71 Switch Ideas
- 1.1K Wireless
- 40 Wireless Ideas
- 6.4K Consumer Product
- 247 Service & License
- 386 News and Release
- 83 Security Advisories
- 29 Education Center
- 10 [Campaign] Zyxel Network Detective
- 3.2K FAQ
- 34 Documents
- 34 Nebula Monthly Express
- 83 About Community
- 72 Security Highlight