I am facing a very strange issue where endpoints are connecting to Unaffiliated relays. Below checks have been performed so far, Please suggest if something is missed
Parsed to relays.dat to see if the relay entry is there
A: Relay entry is under unaffiliated list
If you right click a client machine and look at settings is the Registered Affiliation Seek set correct on the client machines? Also is it just some or all of the clients at this site?
If you were to assign the unaffiliated relay to an advertisement list, does that change your results? I think there used to be a bug about the * included in a Relay Affiliation Group and it was causing us some trouble.
Are your relays serving over 1000 connections? Could this be BigFix attempting to self-regulate relay connections?
What is the relay affiliation group advertisement list?
Do either contain * ?
If the relay in question has a blank affiliation advertisement list, then it might help to set _BESRelay_Register_Affiliation_AdvertisementList to DO_NOT_SELECT_ME_OR_WHATEVER
If the relay in question is NEVER supposed to be automatically selected by any client (only through manual selection) then set it’s _BESRelay_Selection_AutoSelectableRelay to 0
What is the client affiliation group seek list? --- US-Tier2;EMEA-Tier2;APAC-Tier2;LATAM-Tier2;DMZRelay
What is the relay affiliation group advertisement list? --- None
Do either contain * ? None
Pushed this setting _BESRelay_Selection_AutoSelectableRelay to 0 yesterday, still I can see clients connected today to this relay.