04-27-2023 11:46 PM - edited 04-27-2023 11:48 PM
Hello,
Starting from the last three weeks these IP Addresses are attempting to VPN into our network. In the ISE LiveLogs we can see that there are multiple attempts from these ip addresses. These IP addresses were added to the prefilter block rule on the FTD firewall. But still the authentication traffic is reaching the ISE server. shouldn't it be blocked the firewall.
Any ideas why this address is still able to attempt auth, even though it should be getting denied before it even gets that far?
Solved! Go to Solution.