05-22-2005 04:35 AM - edited 03-10-2019 01:27 AM
Hi,
I am using CSA 4.5. I want to disable and log if some one tries to scan open ports to my Server installed with CSA agent. I want to know the exact rule which will block and log the port scan activity to my server (which will be easily done by NMAP).
Please note i have a group in Test Mode.
Regards
Amin
05-22-2005 05:53 AM
Create a new rule and add it to your policy
06-02-2005 09:44 AM
Having one test mode group in your configuration, will make the whole policy test mode.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide