This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Ips

I have a situation where IPS ID 2522 blocks about 800 packets out of 300,000 packets from a source. The problem is that it seems that when IPS detects a packet that matches the profile; it seems to block other packets too even if they do not match. I would like to confirm that this is the correct and for how long is the traffic blocked.

Barry Streets


This thread was automatically locked due to age.
  • Hi Barry, unless it's detecting a PortScan, the IPS won't block traffic other than that matching a rule.

    Please post relevant entries from your IPS log, and also check the PacketFilter log.

    Barry G