Hi posted this on plusnet.service.customer-feedback and thought I'd ask the same here. According to my router firewall I have inbound TCP connections from Plusnet IP's to various non-priveledged ports. The source port is always 11000 and the remote hosts would seem to be PN servers judging from reverse dns (always of the form pih-mailcXX.plus.net). The connection attempts, when they come, are a series of once per minute for 6 minutes or so. They attempt to connect to unprivileged ports, but stick to the same port for each series. The fact it originates from the same port on the remote each time suggests it may be a dropped TCP response to something initiated my side. But if that's the case, I have no idea what.