Endpoint Security

cancel
Showing results for 
Search instead for 
Did you mean: 
cancel

Cisco CyberSecurity

Forum Posts

Hello,  ClamAV a project of Talos by Cisco falsely detected several files of Luminati SDK as a virus, type: Win.Packed.Icloader Yesterday I have submitted the files at https://www.clamav.net/reports/fp and didn't got confirmation email or link to fol...

Hello, We need to archive some events so they're not lost forever after 30 days. I believe Splunk can integrate with the AMP API and can do this but alas we do not have Splunk or any other decent SIEM for that matter. Any bright ideas on how we could...

matty-boy by Level 1
  • 4395 Views
  • 8 replies
  • 0 Helpful votes

I am having a issue to update threat grid  in lab ,  it shows the following error when doing update.  ssh: connect to host appliance-updates.threatgrid.com port 22: No route to host Failure during transfer   Dirty interface is able to ping internet a...

Team, got the email of a bug for amp. Anyone got the BugID, details, or severity? Thx, RickCisco AMP for Endpoints Announcement - AMP for Endpoints Connector downloads --- A bug has been identified in the installer of AMP for Endpoints Connector for ...

Rick Rowe by Level 1
  • 4603 Views
  • 13 replies
  • 0 Helpful votes

Hello all,   I'm under the impression that if installing the AMP connector on a Windows server, we should disable DFC and TETRA. Can anybody point me at an up-to-date document or web page that shows this recommendation?   Many thanks in advance, Matt...

matty-boy by Level 1
  • 7101 Views
  • 2 replies
  • 0 Helpful votes

Resolved! Upgrade SSL

So I am running security scans on our network for the first time. I have a long list of things to fix. One is the SSL/TLS suite another is upgrading the key to the diffie-hellman key exchange. I was hoping to get pointed in the right direction on how...

dbrill001 by Level 1
  • 4138 Views
  • 3 replies
  • 0 Helpful votes

Hi,   I am currently evaluating Rapid Threat Containment with Firepower Threat Defense and ISE. Does anyone if it's possible to add AMP for endpoints to this solution and have AMP to automatically scan a client that has been quarantined by Firepowe/I...

USER       PID %CPU %MEM    VSZ   RSS TTY      STAT START   TIME COMMAND Hi  I have AMP version - AMP for Endpoints Connector v1.9.1.603  Redhat release 7.4   And i have AMP processes being among top memory consumers. Are there any suggestions around...

pzanwar by Cisco Employee
  • 5397 Views
  • 2 replies
  • 0 Helpful votes