Link to home
Start Free TrialLog in
Avatar of jjgriss
jjgriss

asked on

CISCO Open Connects

We have a CISCO Firewall and I have an internal IP address that is showing many connects for upd, tcp, http on the firewall status for sessions.  The IP is not being used from inside because it will not ping.  The internal IP address is also within the DHCP scope for leased ip addresses.  My question is for 1. is it being used by someone malicous and 2. what would be my options to find out how they are using the IP address?
Avatar of plug1
plug1
Flag of United Kingdom of Great Britain and Northern Ireland image

1: No its not its just the connections your pc's various apps are trying to open to the internet

2: You dont need to its not malicious.
Avatar of jjgriss
jjgriss

ASKER

What pc though? I cannot ping the address so to me a pc is not assigned that addess? Correct? Even within DHCP there is no assigned name for that ip address.  So my question is what or who is using it?
Help explain if you can. Thanks.....
ASKER CERTIFIED SOLUTION
Avatar of plug1
plug1
Flag of United Kingdom of Great Britain and Northern Ireland image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial