Hi Kai, I will try again, the PC died. The source is possibly the world of warcraft game, I get this message when from both PCs when they play the game. Part of this software was downloaded while the http proxy was playing up. Yes, I know the risks of using beta software, but how else do you test it? I have also included some line that don't report out in the daily IPS report.
Snort ID 2180 is generated when network traffic that indicates BitTorrent is being used.
The use of BitTorrent may be prohibited by corporate policy in some network environments.
So if you like you can set the rule to 'alert only' or disable it completely in the webinterface:
Network Protection>Intrusion Prevention>Advanced>Modified rules
The report about the bittorrent is correct I expect, seeing it only happens when my sons play WOW and it is always the same server. They do complain about the ping, so changing the IPS rule setting might fix some of that.
The report about the bittorrent is correct I expect, seeing it only happens when my sons play WOW and it is always the same server. They do complain about the ping, so changing the IPS rule setting might fix some of that.