• ATP Alert mail without log - is logged in IPS instead

    In the last 2 days we received several ATP Mail alerts from the UTM. The hostname / IP shown in the mail is not listed in the ATP Log but i can see the IP of the host on the ATP Dashboard (Advanced Protection Statistics) in webadmin. There is no exception…
  • Advanced Threat Protection triggering on alpha.isp-platform.com?

    Devices in use: sg105, sg135, sg430 Firmware v9.505-4 Late yesterday all my UTMs started sending notification of attempts to contact a known malware C&C server. The advanced threat protection alert describes the attempted domain name as alpha.isp…
  • IPS attacks with source IP addresses of UTM

    FormerMember
    FormerMember
    Hi, today, i've got many IPS alerts with the source IP of UTM's LAN and WAN ports. Is this normal? Regards Meghan P.S. The address No.1 in Screenshot 1 is the LAN IP of UTM and address No.2 is the WAN IP of UTM