I know next to nothing about firewalls.
We have Astaro Security Gateway V6installed. It was installed and is maintained by our Internet Provider.
I have looked through documentation but I am still not quite sure what I should be watching for. The firewall is set up to send me email notifications and reports. 99% of the email notifications are for things like Multimedia WMA/WMV downloads which I know are ok.
Some of the emails say the following:
An intrusion has been detected. The packet has *not* been dropped.
If you want to block packets like this one in the future, set the corresponding intrusion protection rule to "drop" in WebAdmin.
Be careful not to block legitimate traffic caused by false alerts though.
Message: "SMTP MAIL FROM overflow attempt.
Is there anything I can read or any tutorials that explain what to look for - what's important and what's not important?
Thanks for any help you can give me.
This thread was automatically locked due to age.