Guest User!

You are not Sophos Staff.

[9.165][ANSWERED] How ATP works ?

Is it possible to have a small presentation about how ATP works ?

What are the expected behaviour in the graphical interface and in the logs if you have an ATP present in your network ?

Do you know how we can test this features in details ?
Parents
  • without the http proxy there is no block page, the browser only runs in a timeout.

    Log entry:
    2013:11:06-16:05:28 dke-asg-02 afcd[32527]: id="2022" severity="warn" sys="SecureNet" sub="packetfilter" name="Packet dropped (ATP)" srcip="10.8.1.145" dstip="176.34.160.144" fwrule="63001" proto="6" threatname="C2/Generic-A" status="1" host="sophostest.com" url="/highrisk" action="drop"
Reply
  • without the http proxy there is no block page, the browser only runs in a timeout.

    Log entry:
    2013:11:06-16:05:28 dke-asg-02 afcd[32527]: id="2022" severity="warn" sys="SecureNet" sub="packetfilter" name="Packet dropped (ATP)" srcip="10.8.1.145" dstip="176.34.160.144" fwrule="63001" proto="6" threatname="C2/Generic-A" status="1" host="sophostest.com" url="/highrisk" action="drop"
Children
No Data