04-29-2004 08:33 AM - edited 03-09-2019 07:13 AM
I have an internel and an external sensor. Both sensors are picking up Netsky virus activity from the same external address. My outside sensor is setup to shun those addresses. Should't that prevent any signatures from passing through the firewall?
04-29-2004 12:01 PM
04-30-2004 10:20 AM
You can opt to block the offending source IP address completely.
I tend to do this when I see obscene amounts of virus-related traffic from one particular source, over all other infected sources. And when the admin of that network complains about not being able to e-mail us, I suggest to he/she that they should pay closer attention to what occurs on their network.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide