You should check the IPS log. This will give you the Rule ID(s) being triggered. You can then take this ID number and create rue modifications as necessary.
You should check the IPS log. This will give you the Rule ID(s) being triggered. You can then take this ID number and create rue modifications as necessary.
Well it's kind of hard when you have couple of thousands users behind your firewall to determine specific flow. I was thinking if anyone encountered this issue before.