This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

ATP Exceptions is not working

Hello everyone,

I have a problem with two FW (one on Azure, one XG)

We have a lot of detections like this (ATP)

 

We saw that this URL centos.brontocdn.com is legit and it's an official Centos Repo.

I allowed it here :

But both FW are still throwing the ATP detections..
And we are spam by email Smiley

Maybe I'm doing it wrong ?

Thanks for the help
Regards


Alexandre



This thread was automatically locked due to age.

Top Replies

  • So, there is something particularly "fishy" about that URL, if you visit https://intelix.sophos.com and run it through the URL, you will notice that it comes back as Spyware & Malware.  Labs is assessing what the core issue is here, but there is some obfuscated code there that would indicate something is off.  ATP is protecting you from accesing that site, and if you bypass it, Intercept X is going to flag it as "Hacking".

    Jump to answer