Traffic logs showing a user associated with many different IP addresses
We are utilising the FSSO Agent to identify the logged in users and match them to traffic. In the traffic logs we have one user that seems to be matching to multiple IP addresses that are in different geographic locations.
What's also interesting is the MAC that's showing is a Cisco router.

The related device seems to be appearing in the fabric topology.

I have no idea how it's relating the device and user.
I'm only fairly new on Fortigates so a bit perplexed..
Any thoughts?
