Environment:
We are running MX-250 with firmware MX 15.25. IDS is on with mode "Prevention" and ruleset "Security"
We are using Lansweeper across our network to manage our PCs.
Problem:
Sometimes the IDS reports on "Filtered Portscan", "Filtered Distributed Protocol Scan", "Filtered Portsweep" and others. All are listed as "Allowed", even though our mode is "Prevention".
I am happy to see these in the reports, so that I can verify that these portscans are appropriate, but why did it just start recently and why does it seem to be intermittent?
Any ideas?
Thanks, and stay healthy everyone.