We found an IP address listed as allowed in the Apache virtual host configuration, granting access to one of our demo websites:
Require ip
Require valid-user

This website is not particularly interesting, and there should be no reason for anyone to access it. We are 95% sure that no one has authorized this address.
The IP address that it belongs to the DoD Network Information Center – military area (see https://www.abuseipdb.com/whois/
What should we do in this case? Is it appropriate to take it as an attempt to break into the server? Who would be interested in doing this?

