Hello,
I noticed sometimes there is suspicious high incoming traffic from transmission (500KiB/s ~ 1000 KiB/s), but despite these incoming traffic, transmission shows zero peers connected and zero download/upload speed.
The traffic can be observed via ifstat and various other network monitoring tools.
Using 'nettop' it can be observed that trasmission is transferring traffic with various IP addresses, at the time of my writing one of the most noticable address is 114.245.146.234 which I cannot see what is paricular about it.
Is this normal or some kind of problem?
I'm running transmission 2.92(14714) on Debian 9.
Thanks!
Suspicious high incoming traffic
Re: Suspicious high incoming traffic
It could be spikes in metadata traffic. But if you experience this traffic for more than a fraction of a second at a time, so without any actual torrent-related traffic, you could be a target of an attack. Any particular ports or protocols involved?