We have enabled Malicious activity protection feature in cisco AMP, how do we validate it in policy.xml. What is the key word to search and check if it has enabled or not. Can someone help in this regard.
We have enabled Malicious activity protection feature in cisco AMP, how do we validate it in policy.xml. What is the key word to search and check if it has enabled or not. Can someone help in this regard.
how to search bulk IOC's
We have currently various versions of Linux connector installed (1.12.1.676/1.12.3.698/1.12.4.702) on our machines.However Cisco has made all the above mentioned versions unsupported and they have asked us to upgrade to the latest version. a) So, we ...
We have currently various versions of Linux connector installed (1.12.1.676/1.12.3.698/1.12.4.702) on our machines.However Cisco has made all the above mentioned versions unsupported and they have asked us to upgrade to the latest version. a) So, we ...
Hi Team, As far i know with McAfee and Symantec, Exclusion consideration is like if you keep C:\Test ( File exclusion) , if you keep C:\Test\(Directory Exclusion) , How does it work in AMP? is this is the same ? does it make any different considerati...
Hi ALL, Do Threat Grid supports the ICAP protocol or other protocol for third-party solution integration for sandboxing purposes. Thank's.
We have a Cisco ASA 5512. We recently had to have the running config restored by our Cisco partner and after the restoration, I noticed a slight change in the trustpoints. For the CA Certs, we have 3 - (1) ADSM_Trustpoint6 - General Purpose Use, (2)...
Hi Team, i don't see any option in policy for email scans , still i would like to know , does AMP scan inbound /Outbound emails ? Regards,Pruthvi
Pretty new to AMP for endpoints. I've been reading about Endpoint Isolation and just wondering what is the benefit of allowing DNS and/or DHCP on an isolated endpoint. Thanks
Hi Team, We see error in console : Cannot connect to server ? what are the basic troubleshooting steps need to be performed ?Please provide me detailed steps ? Regards,Pruthvi
We have enabled Orbital search feature in Cisco AMP for our workstations in our environment, however after enabing the Orbital features machines have started to download some data over the internet. We would like to know what data it is trying to dow...
The Catalina Mac OS is not compatabile with hostscan so VPN can't be used on laptops with the new OS. We are needing to upgrade (https://www.cisco.com/c/en/us/td/docs/security/asa/migration/guide/HostscanMigration43x-46x.html) but the question i have...
Hi everyhone, hope you are safe and at home. This is what I need: - 2 ASA 5525 on HA (one for Active and another for Passive)- 500 simultaneous AnyConnect sessions. If the ASA that has the 500 AnyConnect sessions gets damaged, the ASA for passive is ...
Is it possible to collect continuous event information through the API without duplication?
Can wildcards be used for hostname endpoint selection?host:SRV0087*
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide
Subject | Author | Posted |
---|---|---|
04-10-2025 12:03 AM | ||
04-08-2025 05:37 AM | ||
02-24-2025 10:06 AM | ||
01-20-2025 06:30 AM | ||
12-18-2024 01:13 PM |