Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
I upgraded to the S153 signature , and then couldnt login to the IDM getting an error about unable to download signature configuration.I restarted the IDSM2 and the issue still there , i downgraded to S150 and i can access the IDSM2 using the IDM now...
I have a main and remote site , main site has Windows Active Directory 2003 , DHCP , DNS, Exchange Servers and the two sites connected to the internet directly.The remote site has no servers , just internet connectivity , Does the VPN tunnel pass DHC...
I am trying to filter a false positive alaram (ID=4003).in the Security Monitor it shows the attackers addresses as 10.10.10.25 and 10.10.10.26i tried the following and it didn't work:2nd-include Include All Signatures All Subsignatures 10.10.10.25-1...
Is there a way on pix firewall to limit the # of connections per ip address (private ip address)?once i have an infected laptop with a worm (w32 blaster kind) and it was scanning ip addresses and sending huge number of connections to the firewall , ...
D.,I am using IDSM2 module with the 6513 chasi , the version IPS 5.01 and i was upgrading from S150 to S153.as john mentioned , i will be able to authenticate and login using the IDM but them kick me out and exit because of that error.
i read that documents before my first post , and i changed the order as i mention in the 2nd post and still i couldn't filter out that alarm.then i tried just to have one exclusive filter and it did work.the documentation example talks about filterin...
Jim,I tried it out and reversed the order and still i am getting those 4003 alarms.then i took include all signatures , and left the exclude for 4003 and that alarm stoped.(i verified that i am still getting alarams for other attacks from the same so...
I went through the same problem , even i have a certificate installed on the ACS and the workstation.I uninstalled the certificate on the ACS and issued a new certificate and installed on both sides and it did work.But i am seeing a delay after the m...