This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

violation reason: USER_IDENTITY issue

Hello,

 

Sometimes sophos drops all packages to a random user (not everyone) for 1-2 minutes and after 1 minute it stop dropping, internet start working fine. I checked the diagnostics-packet capture while sophos dropping my packages and i noticed that status "violation" and reason "USER_IDENTITY". Can you please help me in this case?

 

Thanks in advance,



This thread was automatically locked due to age.
Parents Reply
  • Jim,

    by default the timeout for unauthenticated traffic is 120 seconds. You can reduce the timeout period using a console command:

    system auth cta unauth-traffic drop-period XX

    where x is the seconds

    For best practice, do not use a value lower than 45 seconds.

    To view the current configuration, launch the command:

    system auth cta show

    Regards

Children