Since upgrading to WG Version 5 I have a problem with the Log recording thousands of incidents per hour of ICMP. The format is:
Wingate firewall hit report:
Time: 15/11/03 14:29:16
Reason: Port Range
Source MAC address: 00-0A-42-6E-50-54
Destination MAC address: 00-40-05-A1-42-04
Source IP address: 82.38.32.171 : N/A
Destination IP address: 82.41.61.234 : N/A
Protocol: ICMP
Time-to-live: 123
The problem results in gigantic Log files - about 60MB per month which I have to rename and archive to keep the size down to a manageable level.
It never used to do this - although being on a cable connection I am used to plenty of TCP/IP attacks. The Source and Destination Ports are always zero (now reported as N/A) and the IP addresses look close to mine so may be from other machines on the same ISP (Blueyonder).
Can anyone enlighten me as to what is going on here, and if logging of ICMP can in some way be switched off.
Regards
Andrew