This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

tcpdump auf Sophos UMT - Linux Shell, How can I find a communication to IP 107.6.74.76. Are there other methods?

Hi all,

Since days we have the following entries in the Advanced Thread Protection





We want to find out which host in our network is communicating to IP 107.6.74.76 over a Unix/Linux shell with 
the command

tcpdump -nei any port 53 dst 107.6.74.76 -n -s0 -w /var/sec/chroot-httpd/var/webadmin/tcpdump.pcap


Is this a way? Are there any other ways?

KR
Olli



This thread was automatically locked due to age.