This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Intrusion Protection logging

We have a customer trying to connect on an ongoing basis and failing. Our Intrusion Detection log shows one packet dropped at 9:49AM, but nothing after that.

Since there are no further entries in the log, am I safe concluding that the problem isn't Intrusion Detection?



This thread was automatically locked due to age.
  • Steve, do you see anything in the Firewall log when the user fails to connect?  You didn't say what "fails to connect means" - Remote Access, web server, ???

    Cheers - Bob

    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA