Resolved! SNA Host Groups Advanced Options
Can someone help me with understanding what each of these Advanced options means and in which use cases I should check or uncheck these?
Can someone help me with understanding what each of these Advanced options means and in which use cases I should check or uncheck these?
The scenario is that all traffic ingesting to flow sensor is north-south, and all hosts are NATed by public IPs. Currently, there is no east-west traffic. However, if east-west traffic were to ingest, would the hosts be visible as endpoints or networ...
Anybody know if the c9606R and c9300X-24Y can work with Stealthwatch? I try to configure on the c9606R and c9300x-24y flow record REC-IN match ipv4 source address match ipv4 destination address match transport source-port match transport destina...
I am unable to manually assign ANC policies to hosts in the Secure Network Analytics Host Report section. When I inspect a specific host and try to assign one at the Host Summary Pane, I am receiving this error: We encountered an error from one or mo...
Error " The authentication service was unable to fulfill your request. If this problem persists, contact your administrator."
What is the best method for getting security events and analytics into an external SIEM (Splunk)? Thank youPhilip
We wanted to integrate our IBM SOAR with Cisco Threat Grid and it requested for an API key. From where we can get the key and also does we need license to integrate with Cisco Threat Grid?
思科SNA原先叫(Stealthwatch)设备,将语言切换到中文时,进入流量搜索模块,时间范围选择自定义时选择好时间范围后无法搜索将语言切换为英文后可以正常进行搜索原因是英文语言的搜索是这样样子的(11/07/2023 02:36 PM - 12/13/2023 02:41 PM)而中文语言搜索是这样的(11/02/2023 02:39 PM.....12/13/2023 02:44 PM)中间是.....系统无法识别,所以就无法在中文语言的环境下进行搜索
Hi, I need an advice. I want to be allarmed when one host eirher consume bandwith above 30 Mbps, I made new policy in the "Core events" - single host policy but it seems doesn't work What am I doing wrong?
is there a way to reset all of the counters/data through the GUI in Stealthwatch? i have a different setup and want to see data only AFTER the new settings so that i can tell if it is actually working like it is supposed to.
Has anyone been able to get the response times values in Stealthwatch / SNA to populate? We're various Cisco switches and routers exporting netflow (most relevant here are Ciscp 3850 (16.9.5) and 9300 (16.9.7) and have followed the netflow config gu...
Anyone have idea what to do with this Vulnrability reported by a Vulscan service.this is for a cisco CBS 350 series switchthe switch is upgraded to latest frimware exist on cisco website , any idea how to fix this issue with open ssh7.4Summaryopenssh...
Has anyone tried to use the maxmind script provided here https://developer.cisco.com/codeexchange/github/repo/CiscoSE/MaxmindAsnImporter/ to import maxmind data into 7.4.1? Im using an instance in Dcloud and i get localhost MaxmindAsnImporter-maste...
Hi team, Differences have been observed between talos and SNA when they detect the country of origin of the traffic. For example, this IP 185[.]233[.]19[.]223 is from Pakistan and source host group from United States (according to SNA) but in talos i...
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide
| Subject | Author | Posted | 
|---|---|---|
| 07-24-2023 07:58 PM | ||
| 07-02-2021 01:06 AM | ||
| 06-03-2021 10:11 AM | ||
| 12-13-2017 09:56 AM |