https://www.us-cert.gov/ncas/alerts/TA14-353A
- How do we know if SOPHOS Deployed all the SNORT Signatures in this document or are we supposed to add it ourself?
- How do we know if SOPHOS would block communications to those Command and Control Servers, Botnets etc or do we add ourself?
- My Concern is I am sure I enabled the right configurations in IPS, Web Proxy, ATP etc but the question now is I don't know if SOPHOS is actively processing and adding these information released by US-CERT.
- Ideally it would be good if everytime US-CERT Releases a Alert like this TA14-353A and SOPHOS would Announce with Version *** of the Up2Date all the necessary configuration that can be detected and stopped at the UTM Layers is added.
This thread was automatically locked due to age.