cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
698
Views
0
Helpful
4
Replies

threat-detection on ASA v 8.02

curt
Level 1
Level 1

Hello,

I am trying to enable threat detection with scanning-threat shun. The commands took with the config but when I run any nmap scans the ASA does not shun the host. What I am doing wrong?

Thanks,

Curt

4 Replies 4

abinjola
Cisco Employee
Cisco Employee

show threat-detection statistics

show threat-detection statistics host

does it show anything ?

can you get me sh run | inc threat ?

I have have attached the 3 outputs that you requested. Thanks for taking the time to look at this.

Curt

abinjola
Cisco Employee
Cisco Employee

You may need to reconfigure the scan rate for ASA to detect the traffic from scanner..

curt
Level 1
Level 1

This was the 2nd config. The first one I had set for scanning. I set the 2nd one for ICMP and tried to ping flood it just to see if it would shun me, but it never did.

Review Cisco Networking for a $25 gift card