Hi Phillip,
Those packets are the discovery packets that the agent sends to find the
CAS. It looks like you have the discovery host set to 1.1.1.1 on those
clients.
You should be seeing those packets on the windows agent also. If you
still have a capture from the windows client filter it on udp port 8906
and see if it's just going to a different IP address.
Thanks,
Nevin
Hernandez, Phillip Andrew wrote:
While going though some packet captures I discovered that the Mac
agent continually sends a UDP Packet to 1.1.1.1 has anyone else seen
this behavior? I did a packet capture on both a CCA Drop and a NON-CCA
drop. I only saw the UDP packet on the NON-CCA drop. I did a packet
capture on the windows agent 4.1.3.1 and I did not see the same kind
of traffic. Can anyone explain why the Mac agent would be doing this?
I included the packet capture.
Thanks
Phillip Hernandez
Network Techninian
Liberty University
434-592-3451