Is there a way to allow portscanning from the internal network out? or will the replys just be seen as a port scan? Is there any way to customize the portscan detection system?
I believe it's possible to include your internal subnet as part of an exclusion list when you're setting up portscan detection. (You can exclude any subnet if you want, as long as it's defined in your networks).
I believe it's possible to include your internal subnet as part of an exclusion list when you're setting up portscan detection. (You can exclude any subnet if you want, as long as it's defined in your networks).