03-13-2008 12:10 AM - edited 03-11-2019 05:16 AM
Hello,
I am trying to enable threat detection with scanning-threat shun. The commands took with the config but when I run any nmap scans the ASA does not shun the host. What I am doing wrong?
Thanks,
Curt
03-13-2008 05:56 AM
show threat-detection statistics
show threat-detection statistics host
does it show anything ?
can you get me sh run | inc threat ?
03-13-2008 03:52 PM
03-14-2008 02:14 AM
You may need to reconfigure the scan rate for ASA to detect the traffic from scanner..
03-14-2008 05:51 PM
This was the 2nd config. The first one I had set for scanning. I set the 2nd one for ICMP and tried to ping flood it just to see if it would shun me, but it never did.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide