I'd like to know if there is an easy way to view events that caused the IDS to shun a host.
I understand there is Event Viewer standalone, with VMS and IDM. However, with event viewer, it is difficult to view (search) a specific event that occurred in the past.
Is there another way to show the hostname, IDS action taken AND the trigger?
Thanks,
Larissa