Has anyone noticed the high degree of "Background Intelligent Transfer Service (BITS)" traffic is coming through their FWs?
I've read up on what it is and wondered why so much traffic is hitting the FW and what is being transferred.
I came in this morning and found BITS was listed at the top of the list on the "Top Client Applications Seen" dashboard widget at 387,452Kbs. Then after about a half hour it's gone.
Does anyone else see traffic like this and what limitations do you put on it?
Most of the research I see shows to disabled it at the source, on the individual computer. This doesn't prevent malicious intent of sending large amounts of files over a connection.
The transfer could be so low that it wouldn't be noticed.
Now that I've seen this I'm mainly curious, but it could be a problem if someone's got it configured to copy company files.