Hello,
some time ago I get messages from my UTM9 like these two following
This thread was automatically locked due to age.
Hello,
some time ago I get messages from my UTM9 like these two following
Hi,
Looking at the log lines, the UTM is simply dropping malicious traffic and an ICMP flood attempt. If your observation tells you that this occurs during the time you use Safari, then you must get the devices scanned. Alongside, make sure the UTM's patterns are up2date.
Thanks,
Sachin Gurung
Team Lead | Sophos Technical Support
Knowledge Base | @SophosSupport | Video tutorials
Remember to like a post. If a post (on a question thread) solves your question use the 'This helped me' link.
Hey,
thank you for your reply.
I whiped the devices and I hopefully got rid of the Rig Exploid kit alert.
Now I have to deal with the ICPM flood
LG
Patrick
Hello,
short notice on the intrusion alert issue.
After I contacted apple support (very helpful by the way), I went the hard way and reinstalled back both devices by using the DFU or Recovery mode.
First everything looks all right, but after a day same problem starts again. Only with the safari browser. I installed as an alternative firefox and I don't get any alerts from the sophos.
So, I'm still on the job. Any advice would be helpful
Regards Patrick
Thanks for the update, I will try to recreate this locally and test it.
Thanks
Sachin Gurung
Team Lead | Sophos Technical Support
Knowledge Base | @SophosSupport | Video tutorials
Remember to like a post. If a post (on a question thread) solves your question use the 'This helped me' link.
Thanks for the update, I will try to recreate this locally and test it.
Thanks
Sachin Gurung
Team Lead | Sophos Technical Support
Knowledge Base | @SophosSupport | Video tutorials
Remember to like a post. If a post (on a question thread) solves your question use the 'This helped me' link.