top of page

General discussion

Public·1 member

Why is traffic matching my DNS Sinkhole rule

My top security rule looks like this:


The sinkhole object is defined as FQDN:


The FQDN resolves ok.

So why the heck is this traffic matching the rule?

My sinkhole rule sends an email when it's matched, so this is causing an headache.

The source IP is 0.0.0.0 which I read is that the PA think's it's flood traffic. But still, it should not match this rule because the destination is clearly not matching.


30 Views
Reaper
Reaper
Aug 09, 2023

no clue :/

  • Whatsapp
  • Amazon
  • X
  • LinkedIn

Contact
PANgurus BV
VAT: BE0769507136
INFO@PANGURUS.COM
+32 (486) 986 753

©2020 by PANgurus.

bottom of page