Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
Installation/Upgrade Guides.Installation guides for all 4200 series IDS/IPS sensors and associated IPS modules.Configuration GuidesConfiguration guides for the command line (CLI), IPS Device Manager (IDM), and IPS Manager Express (IME).Configuration ...
Hi dec0dernyc, The MARS has a built in system rule named "System Rule: Inactive CS-MARS Reporting Device", which triggers an incident whenever the "Inactive CS-MARS reporting device" event is generated. The event, in turn, is generated when the ...
Hi Ssweehinlew, You can get a composite of all of the raw messages the MARS receives, arranged chronologically, by configuring the archiving on the device. Once archiving has been configured, check the archiving location to find a list of folders...
Hi Jason, The ip logging functionality stores the logs in a circular buffer, so there is no need (and no supported way) to delete/manage the old log files - they will be overwritten then new logs necessitate it. All of the information on ip logg...
Hi Snowmizer, There is nothing that I know of related to our VPN solutions that would cause the ICMP Network Sweep w/Echo signature to fire. This signature simply means that the attacker IP pinged 5+ other addresses in succession. You might want...