cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
329
Views
1
Helpful
3
Replies

FMC Security Intelligence - logging only

Alex-Pr
Level 1
Level 1

I seem to recall years ago with an older version of FMC setting up the SI so it would generate a event in the event viewer but will not block the traffic.  

I am needing to setup a new FW with 7.4.2 in inline routed mode and want to have the Security Intelligence to just log on matches but not block.  I can find where to change the IDS to passive but not the SI. The SI seems to block for every match..

 

Thanks

 

1 Accepted Solution

Accepted Solutions

nspasov
Cisco Employee
Cisco Employee

You right click on the Network and/or URL list and then pick "Monitor-only (do not block).

Thank you for rating helpful posts!

Thank you for rating helpful posts!

View solution in original post

3 Replies 3

nspasov
Cisco Employee
Cisco Employee

You right click on the Network and/or URL list and then pick "Monitor-only (do not block).

Thank you for rating helpful posts!

Thank you for rating helpful posts!

Thank you.   

Can you more elaborate 

Thanks 

MHM

Review Cisco Networking for a $25 gift card