Options
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Fortigate IPS action
Hi Guys,
We have IPS sensors configured for incoming traffic from the internet and the action is currently configured to be signature defaults. This setting leaves around 178 critical signatures with the action of PASS. Could someone please recommend me if this should be changed to action BLOCK.
1 REPLY 1
Options
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Just recognized the same thing and I wonder why we have so many signatures with severity Critical but the Action is by default set to PASS.
Would be great someone could explain.
Thx
