Hi,
i get more and more frequent portscan alerts running for multiple hours.
I would like to block them manually on an IP basis.
I created a network group populated with bad IP addresses and implemented this as a blackhole route, but still having the portscan alerts.
Am i missing something ?
This thread was automatically locked due to age.