Print

Print


Gene,

My guess would be Akamai servers (I see someone mentioned that as a
possibility).  I know some are housed at Merit.  You might have to
intercept DNS traffic to see whether the requests are for Windows
Update or something else.

Doug


On Wed, May 20, 2009 at 11:31:26AM -0400, Gene Willacker wrote:

> Does anyone know why a Windows PC running Symantec security software 
> would send http packets to addresses on the 192.122.184.0/24 subnet, 
> which is owned by Merit? I'm trying to lock down outbound traffic to 
> known and approved addresses, such as Windows Updates, but I don't know 
> why the PCs are sending port 80 packets to 192.122.184.89 or 
> 192.122.184.83. Nothing helpful is found with Google.
> 
> Thanks, Gene

-- 


Doug Nelson, Network Architect	 |  [log in to unmask]
Academic Technology Services	 |  Ph: (517) 353-2980
Michigan State University	 |  http://www.msu.edu/~nelson/