<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: FMC AMP for Network Status in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/fmc-amp-for-network-status/m-p/4018951#M937175</link>
    <description>&lt;P&gt;The patch may have made something visible that was there all along.&lt;/P&gt;
&lt;P&gt;The message is indicating that you have sent more than 200 files in a 24-hour period to AMP cloud for ThreatGrid analysis.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I usually see this when applying a file policy on east-west traffic (i.e. between users and file servers) where the policy indicates to send unknown files on for analysis.&lt;/P&gt;</description>
    <pubDate>Mon, 27 Jan 2020 17:51:48 GMT</pubDate>
    <dc:creator>Marvin Rhoads</dc:creator>
    <dc:date>2020-01-27T17:51:48Z</dc:date>
    <item>
      <title>FMC AMP for Network Status</title>
      <link>https://community.cisco.com/t5/network-security/fmc-amp-for-network-status/m-p/4018467#M937174</link>
      <description>&lt;P&gt;I patched our FMC from 6.4.0.2 to 6.4.0.7. I am receiving a warning that states " Successfully connected to cloud, Number of files detected in traffic exceeds module threshold."&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Is this something that will clear itself up in time? This warning was not present before patching.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks!!&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2020 17:52:05 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-amp-for-network-status/m-p/4018467#M937174</guid>
      <dc:creator>Zachary Ballard</dc:creator>
      <dc:date>2020-02-21T17:52:05Z</dc:date>
    </item>
    <item>
      <title>Re: FMC AMP for Network Status</title>
      <link>https://community.cisco.com/t5/network-security/fmc-amp-for-network-status/m-p/4018951#M937175</link>
      <description>&lt;P&gt;The patch may have made something visible that was there all along.&lt;/P&gt;
&lt;P&gt;The message is indicating that you have sent more than 200 files in a 24-hour period to AMP cloud for ThreatGrid analysis.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I usually see this when applying a file policy on east-west traffic (i.e. between users and file servers) where the policy indicates to send unknown files on for analysis.&lt;/P&gt;</description>
      <pubDate>Mon, 27 Jan 2020 17:51:48 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-amp-for-network-status/m-p/4018951#M937175</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2020-01-27T17:51:48Z</dc:date>
    </item>
    <item>
      <title>Re: FMC AMP for Network Status</title>
      <link>https://community.cisco.com/t5/network-security/fmc-amp-for-network-status/m-p/5229885#M1117830</link>
      <description>&lt;P&gt;Thanks Marvin for response on this. Did you have any reference about this?&amp;nbsp;&lt;BR /&gt;Best regards,&amp;nbsp;&lt;BR /&gt;Chamnan,&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 28 Nov 2024 04:44:58 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-amp-for-network-status/m-p/5229885#M1117830</guid>
      <dc:creator>chamnan neang</dc:creator>
      <dc:date>2024-11-28T04:44:58Z</dc:date>
    </item>
    <item>
      <title>Re: FMC AMP for Network Status</title>
      <link>https://community.cisco.com/t5/network-security/fmc-amp-for-network-status/m-p/5230345#M1117866</link>
      <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/1817686"&gt;@chamnan neang&lt;/a&gt; here are two references:&lt;/P&gt;
&lt;P&gt;"Public cloud that processes eligible files that you send for dynamic analysis, and provides threat scores and dynamic analysis reports. Firepower supports 200 samples/day for &lt;SPAN class="ph"&gt;Secure Malware Analytics&lt;/SPAN&gt; analysis. "&lt;/P&gt;
&lt;P&gt;Reference: &lt;A href="https://www.cisco.com/c/en/us/td/docs/security/secure-firewall/management-center/device-config/740/management-center-device-config-74/network-malware-protection.html" target="_blank"&gt;https://www.cisco.com/c/en/us/td/docs/security/secure-firewall/management-center/device-config/740/management-center-device-config-74/network-malware-protection.html&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;"&lt;SPAN&gt;In the new ThreatGrid sample limits model, these limits are the number of samples devices can upload for File Analysis per organization. All integrated devices (WSA, ESA, CES, FMC, and so on) and AMP for Endpoints are collectively entitled to 200 samples daily, regardless of the number of devices.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P style="background-image: url('http://www.cisco.com/en/US/i/templates/note.gif'); background-repeat: no-repeat; background- position: 2px 4px; height: auto; width: auto; padding: 10px 5px 10px 35px; margin-top: 10px; margin-bottom: 10px; border-top: 1px solid #ccc; border-bottom: 1px solid #ccc; overflow-x: hidden;"&gt;&lt;STRONG&gt;Note&lt;/STRONG&gt;: This counter is not reset daily; instead, it works as a 24-hour rollover period.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;"&lt;/P&gt;
&lt;P&gt;Reference: &lt;A href="https://www.cisco.com/c/en/us/support/docs/security/email-security-appliance/215283-understand-the-error-upload-limit-reach.html#toc-hId-30642250" target="_blank"&gt;https://www.cisco.com/c/en/us/support/docs/security/email-security-appliance/215283-understand-the-error-upload-limit-reach.html#toc-hId-30642250&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 29 Nov 2024 02:48:26 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-amp-for-network-status/m-p/5230345#M1117866</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2024-11-29T02:48:26Z</dc:date>
    </item>
  </channel>
</rss>

