<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Security over Connectivity. in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/firepower-anyone-using-security-over-connectivity-or-maximum/m-p/3077597#M145669</link>
    <description>&lt;P&gt;Security over Connectivity.&lt;/P&gt;</description>
    <pubDate>Mon, 20 Mar 2017 20:06:07 GMT</pubDate>
    <dc:creator>Philip D'Ath</dc:creator>
    <dc:date>2017-03-20T20:06:07Z</dc:date>
    <item>
      <title>Firepower - anyone using security over connectivity or Maximum detection</title>
      <link>https://community.cisco.com/t5/network-security/firepower-anyone-using-security-over-connectivity-or-maximum/m-p/3077594#M145666</link>
      <description>&lt;P&gt;Thinking to select a group of important well defined hosts and apply a stricter IPS level.&amp;nbsp;&lt;BR /&gt;Anyone using the above policies? Moved from balanced security to a stricter policy?&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 09:05:27 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/firepower-anyone-using-security-over-connectivity-or-maximum/m-p/3077594#M145666</guid>
      <dc:creator>evan.chadwick1</dc:creator>
      <dc:date>2019-03-12T09:05:27Z</dc:date>
    </item>
    <item>
      <title>We have been trialling that</title>
      <link>https://community.cisco.com/t5/network-security/firepower-anyone-using-security-over-connectivity-or-maximum/m-p/3077595#M145667</link>
      <description>&lt;P&gt;We have been trialling that mode for about 3 months. &amp;nbsp;We get maybe 1 false positive every month to two months. &amp;nbsp;Note that we are typically only using "business" web sites, with not that much variation. &amp;nbsp;If your users are accessing a wider variety of sites you may get different results.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Overall, we have decided to accept that odd false positive and leave it on preferring security.&lt;/P&gt;</description>
      <pubDate>Mon, 20 Mar 2017 03:05:31 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/firepower-anyone-using-security-over-connectivity-or-maximum/m-p/3077595#M145667</guid>
      <dc:creator>Philip D'Ath</dc:creator>
      <dc:date>2017-03-20T03:05:31Z</dc:date>
    </item>
    <item>
      <title>Which mode? Max detection or</title>
      <link>https://community.cisco.com/t5/network-security/firepower-anyone-using-security-over-connectivity-or-maximum/m-p/3077596#M145668</link>
      <description>&lt;P&gt;Which mode? Max detection or security over connectivity?&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Thanks,&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Evan&lt;/P&gt;</description>
      <pubDate>Mon, 20 Mar 2017 19:53:21 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/firepower-anyone-using-security-over-connectivity-or-maximum/m-p/3077596#M145668</guid>
      <dc:creator>evan.chadwick1</dc:creator>
      <dc:date>2017-03-20T19:53:21Z</dc:date>
    </item>
    <item>
      <title>Security over Connectivity.</title>
      <link>https://community.cisco.com/t5/network-security/firepower-anyone-using-security-over-connectivity-or-maximum/m-p/3077597#M145669</link>
      <description>&lt;P&gt;Security over Connectivity.&lt;/P&gt;</description>
      <pubDate>Mon, 20 Mar 2017 20:06:07 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/firepower-anyone-using-security-over-connectivity-or-maximum/m-p/3077597#M145669</guid>
      <dc:creator>Philip D'Ath</dc:creator>
      <dc:date>2017-03-20T20:06:07Z</dc:date>
    </item>
    <item>
      <title>I have used the security over</title>
      <link>https://community.cisco.com/t5/network-security/firepower-anyone-using-security-over-connectivity-or-maximum/m-p/3077598#M145670</link>
      <description>&lt;P&gt;I have used the security over connectivity policy once before. I have not seen a lot of differences compared to the balanced policy. I do see more low impact signatures (not suspicious) being hit with this policy.&lt;/P&gt;</description>
      <pubDate>Tue, 21 Mar 2017 01:10:19 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/firepower-anyone-using-security-over-connectivity-or-maximum/m-p/3077598#M145670</guid>
      <dc:creator>Rahul Govindan</dc:creator>
      <dc:date>2017-03-21T01:10:19Z</dc:date>
    </item>
    <item>
      <title>FYI, please see below for a</title>
      <link>https://community.cisco.com/t5/network-security/firepower-anyone-using-security-over-connectivity-or-maximum/m-p/3077599#M145671</link>
      <description>&lt;P&gt;FYI, please see below for a high-level comparison of the options.&lt;/P&gt;
&lt;P&gt;Source:&amp;nbsp;&lt;/P&gt;
&lt;P&gt;BRKSEC-3121 Firepower Threat Defence Advanced Capabilities Deployment and Troubleshooting Options (2017 Melbourne)&lt;/P&gt;
&lt;P&gt;https://www.ciscolive.com/online/connect/sessionDetail.ww?SESSION_ID=94771&lt;/P&gt;
&lt;P&gt;Connectivity over Security: ~ 500 Rules&lt;BR /&gt;• CVSS Score of 10&lt;BR /&gt;• Age of Vulnerability: 2 year and newer&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;Balanced : ~ 7200 Rules&lt;BR /&gt;• CVSS Score of 9 or greater&lt;BR /&gt;• Age of Vulnerability: 2 year and newer&lt;BR /&gt;• Rule category equals Malware-CnC, blacklist, SQL Injection, Exploit-kit&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;Security over Connectivity: ~ 10000 Rules&lt;BR /&gt;• CVSS Score of 8 or greater&lt;BR /&gt;• Age of Vulnerability: 3 years and newer&lt;BR /&gt;• Rule category equals Malware-CnC, blacklist, SQL Injection, Exploit-kit, App-detect&lt;/P&gt;</description>
      <pubDate>Tue, 21 Mar 2017 07:24:13 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/firepower-anyone-using-security-over-connectivity-or-maximum/m-p/3077599#M145671</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2017-03-21T07:24:13Z</dc:date>
    </item>
  </channel>
</rss>

