This is an interesting anomaly, since the "DoS" is originating from
inside the network. The traffic looks technically legit, as it's UDP DNS
traffic towards internet name servers, but the rates are immense. We
have 1,000's of devices concurrently ope...
Thanks for the response, Rony. I've enabled source UDP session detection
in pass mode, let's see how things look. I'm hoping to get some more
insight that way.Gus