Hi Damon,What you described definitly sounds possible.You will need to be more specific though if you want help with that issue.RegardsNeil ArchibaldIPS Signature Team
Hi JP,The signatures need to be enabled and unretired for them to function.The following FAQ described this process in detail:http://www.cisco.com/web/about/security/intelligence/ips_sig_faq.html#2Hope this is helpful.RegardsNeil ArchibaldIPS Signatu...
Hi,You can definitly do that on the IPS, you would do this by making an atomic-ip signature looking for a tcp packet with only the SYN flag set to destination port 443. You would then add an event-count for the number of connections you need. Dependi...
Hi,You are looking to stop concurrent connections, right?There are definitly better solutions for this than an IPS signature, I would bet on the ASA or even something server side for this. That said, perhaps you could use event-count with AxBx with a...
Hey Jon,We have a signature for Skype activity on the IPS:11251-0 Skype Client Activity However i believe this will only alert on the activity, it will not prevent Skype from working.Skype has been designed to tunnel over legitimate protocols on a va...