This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

First ATP Reported

I noticed yesterday that our firewall had reported this anomaly coming from our mail server. The destination IP is simply an open DNS I added to the DNS setting on the device but this also occurs on the other entries as well, why would it report this?

 



This thread was automatically locked due to age.
Parents Reply
  • Looks to me like a false positive. Anyone know what threat feed the XG use? If we can track down the source maybe we can fix (or confirm, or limit the scope of) the issue/impact.

    I don't mind an email from my appliance with a false positive, but I'd like to be able to tune it so I don't keep getting the same false positives after investigation.

Children