02-09-2017 12:51 AM - edited 03-12-2019 06:17 AM
Hello,
How to verify if network traffic is checked by IPS rules.
I have set p a rule to inspect telnet traffic for root login from a specific host, but no event is generated when I telnet to a host with root login.
ASA5512-x
access-list sfr_redirect line 1 extended permit ip any any
!
class-map sfr
match access-list sfr_redirect
!
policy-map global_policy
class sfr
sfr fail-open
!
Thank you
02-09-2017 05:27 AM
Please refer to the below urls for Firesight system which might assist to answer your inquiry.
http://www.cisco.com/c/en/us/td/docs/security/firesight/541/user-guide/FireSIGHT-System-UserGuide-v5401.html
http://www.cisco.com/c/en/us/support/docs/security/firesight-management-center/118595-configure-firesight-00.html
Hope to help.
10-08-2018 03:09 AM
Hello,
Could you fix this?
I am trying to implement something similar, maybe could help me how you solved this
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide