After upgrading to V6 and using dual internet connections(int http proxy goes to 2nd connection), i notice that the IDS doesn't detect ANYTHING from the internal network regarding chat(and i bet it doesn't detect anything in any rule either).
MSN of course works like a charm, there isn't any PF rule that allows http or https access directly.
All workstations have the default gateway pointed to the firewall.
the only way i managed to make the IDS detect was disabling the proxy in IE, allowing explicit http PF rules from my station to any and then i got a hit.
In one of our customers that has a very similar network(with only one inet connection), all stations pointed to ASL, proxy, no PF direct rules, all MSN traffic gets logged(it's a 5.206).
Since i want to block msn access eventually, i need this to work ASAP
This thread was automatically locked due to age.