DNS traffic

From: Steven Hook (shook_at_NOTbowens.co.za)
Date: 02/01/05


Date: Tue, 1 Feb 2005 12:33:18 +0200

Hey,
We have a 128 K diginet line, it started to seem a lil slow, so I asked our
ISP for traffic analysis, they gave me a page to check our traffic on, every
day, there's about 200M of DNS (port 53 I think) traffic each way (in and
out bound) is this much traffic normal, we closed port 53 on the gateway,
but the traffic is still there, is there a way to see see what internal IP
addresses are generating the traffic?
Thanks
Steven