I have a firewalla firewall. It by default started blocking odd traffic makes a huge amount of hits. 8000 a day. It seems harmless but I am blocking it and the doorbell and camera seems to function completely as normal.
What is all this extra traffic contacting back to aqara servers. I am not using any cloud services or anything.
The fact that the blocked destinations are p2p2-kr.aqara.com and p2p3-kr.aqara.com is actually quite interesting. The p2p hostname strongly suggests that this traffic is related to Aqara’s P2P (Peer-to-Peer) video and signaling infrastructure.
The P2P connection is primarily used for Aqara’s remote connectivity, such as accessing the doorbell remotely through the Aqara app. If you use the doorbell within your home network, the relevant communication can take place locally without relying on these external P2P servers.
So, the ~8,000 connections per day may very well be a retry/keep-alive loop: the doorbell tries to establish or maintain a P2P connection to Aqara’s cloud infrastructure, your Firewalla blocks it, and the doorbell keeps trying again. 8,000 attempts per day works out to roughly 5–6 attempts per minute, which is certainly consistent with a periodic retry mechanism.