cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1549
Views
0
Helpful
1
Replies

Cisco FirePower

MohKha78931
Level 1
Level 1

I am trying to do a Network layer 3 malware detection and prevention test. I tried to download a basic test file from Eicar[.]com. That on its own should have triggered an alert from FirePower. I then looked at the FirePower console under Anaysis>Files>File Summary and I did not see any events. Is there someway to configure FirePower to pick up and Eicar test file as malicious? Are there any other test files I can use that will trigger an alert? Please Advise. 

1 Reply 1

marce1000
Hall of Fame
Hall of Fame

 

 - Make sure to have the needed licensing level for malware detection, further more have a look at this document for guidelines : 

         https://www.cisco.com/c/en/us/td/docs/security/firepower/60/configuration/guide/fpmc-config-guide-v60/Reference_a_wrapper_Chapter_topic_here.html

 M.



-- Each morning when I wake up and look into the mirror I always say ' Why am I so brilliant ? '
    When the mirror will then always repond to me with ' The only thing that exceeds your brilliance is your beauty! '