cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
167
Views
1
Helpful
2
Replies

Stable FTD released version and fixed brute force attack

Da ICS16
Level 1
Level 1

Dear Team,

We are looking the stable FTD version can upgrade to fixed the vulnerability and ensure it cover suck of attack like VPN brute force...and prevent AD Account locked out even attacker known the legit AD user.

Kindly share commend / good practice to resolve it.

Best Regards,

 

2 Replies 2

@Da ICS16 the threat detection feature for remote access VPN services helps prevent Denial of Service (DoS) attacks and is supported in the following releases.

These threat detection features are supported in the Cisco Secure Firewall Threat Defense versions listed next:

  • 7.0 version train-> supported from7.0.6.3 and newer versions within this specific train.
  • 7.2 version train-> supported from7.2.9 and newer version within this specific train.
  • 7.4 version train-> supported from7.4.2.1 and newer version within this specific train.
  • 7.6 version train-> supported from7.6.0 and any newer versions.

7.4.2 is the current Cisco gold star version.

https://www.cisco.com/c/en/us/support/docs/security/secure-firewall-threat-defense/222383-configure-threat-detection-for-remote-ac.html

https://www.cisco.com/c/en/us/support/docs/security/secure-firewall-threat-defense/221806-password-spray-attacks-impacting-custome.html

 

Hello @Rob Ingram Thanks for helpful commend.

 

Review Cisco Networking for a $25 gift card