Dear All,
Anyone had come across on the below Events:
We have SmartEvent (Both R77.x & R80.x) in same machine of Management server.
We have enabled Event Policy - "Unauthorized Entry" - "Credential Guessing" to generate events of 3 failures within 600 Seconds.
We are receiving Events on the above as well which is fine.
But we have different info on the above "Credential Guessing" Event Log.
Example: We have Internal Server (Windows 2012) and we tried to SSH into Firewall from this Server.
For few wrong attempts as per Event Detection - we get Events.
But the Event "Product" says "Linux OS" instead of "Windows OS"
(Attached screenshot)
Regards, Prabulingam