I'm seeing an awful lot of weird ARP broadcasts:
10:24:02.255006 arp who-has 172.16.100.103 (Broadcast) tell 172.16.100.103I do not use any 172 addresses on this network. The MAC address associated with these broadcasts doesn't show up on any ARP tables... not the switches, not any of the hosts. Is there a way to identify which physical port this traffic is coming from? Switches are Cisco
2970s with IOS 12.2