 We have put a network sniffer on our network, and have seen a lot of trafic from our PM Console server (many gigas per days). The console always send a lot of packet on the FINGER protocol towards the clients.


    Hi nicko,


    I would assume two things here:


    1) The "network scanner" you're using tries to tie used ports to known services and assumes that traffic on port 79 is FINGER protocol.

    2) You have host module port configured to port 79.


    If the above holds true; it's the normal Policy Manager Server generated traffic that you're seeing in the "network scanner" (policies, new client installations, hotfix installations, etc.)

