Monday, December 3, 2018

Internet Port scanning thresholds - Firepower

does anyone fine tune the firepower ips when getting scanned from the internet with programs like nessus/qualys/nmap so that devices dont get alot of good info with searching for open ports, fingerprints, etc. or after 4-5 pings or 4-5 tcp connects ban ip.

firepower is blocking scans but would like to cut down on chatter when a port scan is performed on wellknown ports (1-1024).



No comments:

Post a Comment