Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
Prime
Contributor

Signature related query

Want to  know what signatures can be put in prevent for below audit remarks -OS fingerprinting, host port scanning, fsl evasion, bruteforce

 

0 Kudos
4 Replies
G_W_Albrecht
Legend Legend
Legend

I would assume that none of these can be prevented using signatures!

2. sk110873: How to configure Security Gateway to detect and prevent port scan

CCSP - CCSE / CCTE / CTPS / CCME / CCSM Elite / SMB Specialist
0 Kudos
PhoneBoy
Admin
Admin

There is a Core protection called Fingerprint Scrambling, which is disabled by default.
As I recall, it has a pretty significant performance impact.

There are also a few different "brute force" IPS protections depending on the exact target:

image.png

Some of these are enabled by default in the Optimized and Strict profiles, a few are not due to their significant performance impact.

Guenther already linked to information on port scanning

I don't know what "fsl evasion" is, can you elaborate?

0 Kudos
Prime
Contributor

sorry its please read as ssl evasion not fsl evasion.

0 Kudos
PhoneBoy
Admin
Admin

Not familiar with this term please describe in more detail.

0 Kudos

Leaderboard

Epsum factorial non deposit quid pro quo hic escorol.

Upcoming Events

    Tue 20 May 2025 @ 11:30 AM (PDT)

    Las Vegas: Check Point Hybrid Mesh

    Wed 21 May 2025 @ 11:30 AM (MST)

    Tempe, AZ: Check Point Hybrid Mesh

    Tue 03 Jun 2025 @ 06:00 PM (EDT)

    Montreal: CPX Recap

    Tue 10 Jun 2025 @ 06:00 PM (EDT)

    Quebec City: CPX Recap
    CheckMates Events