Microsoft updates and flooded our network connections
Wanted to share the findings regarding the recent investigation into one of my site recent issue. After conducting a troubleshooting, it appears that the firewall is not the culprit behind the disruptions .Upon reviewing the logs during the time of the incident, I have noticed that some unusual behavior linked to the application running related to Microsoft updates and flooded our network connections. However, there are certain IP addresses in question that do not appear to belong to Microsoft. Notably, the IP address 217.20.50.41,184.84.170.208,199.232.210.172 are associated with [qwilt.com],Fastly, Inc, etc. Given this information, we need to validate whether this IP address is indeed linked to Microsoft services for updates. To ensure we have accurate information, I recommend to clarify whether these IP addresses are legitimate and if they are authorized for use in their update processes??