Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
fabiofabio
Contributor

gprs protocol issue

good morning,
this morning I noticed a certain alert in the logs. the log that I show below with the respective firewall rule, points out to me that anyone who uses a tcp protocol of any type with the certain range of open ports can enter that server. is there a way to block access to the tcp-gprs protocol only? or is it possible to limit communications from certain ssid? also, did I correctly interpret what happened in that log? the alert simply warned me that someone used the kerberos protocol, right? any advice is welcome, thanks

 

Catrtgrtgtura.PNG

0 Kudos
2 Replies
the_rock
Authority
Authority

Are you using default CP service or did you end up creating custom one? The reason I ask is because with custom service, you can choose the actual protocol and if you select none, then it should not do regular inspection for that service, like it normally would.

0 Kudos
fabiofabio
Contributor

do you mean the tcp_gprs service that you see in the screen? I created a new one with a range of ports

0 Kudos