BWC Cybersecurity Overlord ✭✭✭
Reactions
Comments
-
Hi @Vikas thanks for the update, my TZ 400 is connecting to 35.156.63.64, which does not seem to be in your list. --Michael@BWC
-
Hi Francesco, will do, nothing is more pleasing to create a ticket right after installing a new release, or trying to update. This time 2 out of 5 endpoints having update trouble, could be worse. W2K12 server is online and compliant and Last active date shows less than a minute ago, but Default Policy with 3.1 not…
-
Well, for me personally ConnectWise (Control) is a total dilemma, but it seems things are not getting good for them on other fronts as well. Hopefully this integration works out for all parties.
-
Hi @SnoopW a while back I tested CC on a W2K12R2 Server running a DNS service, WebThreatProtection messed it up pretty hard, don't know if this still occurs. No other major problems so far with CC 3.x on a single test server. --Michael@BWC
-
Hi @preston back in the days I started this, but no progress. Or something like UserVoice would be very handy. --Michael@BWC
-
Hi @Larry the extensive use of unexplained acronyms should be reported to the AAA (agency against acronyms) :) CSa stands for Capture Security Appliance :) --Michael@BWC
-
Hi @Darshil is this certificate issued by a public CA? To do further investigation you can examine the cert/key with openssl or my preferred tool of choise XCA. --Michael@BWC
-
Hi @RedNet I did not received any further information about WAN peers etc., seems to be somewhere in the Amazon EC2 spheres. In my case, having 10.0.0.0/8 routed to the bavarian governmental intranet spice things up and will question if a deployment of CSC would even be an option. --Michael@BWC
-
Hi @Chris, I usually give up after 2 weeks if noone responded, but I'am a frequent flyer and drop by very regular, mileage will vary :) --Michael@BWC
-
Hi @Ninad94 just a wild guess, but an one hour interval sounds a bit like a problem caused by timezone differences between the sites, if you made sure that P1/P2 are in sync? Honestly I'am not sure if the SAs are negotiated for x-minutes or to a specific time/date. Maybe you can force this by changing the Timezone setting…
-
Hi @RuheeSafiya thanks for the reply, will check if the customer customer is willing to pay me for another support case, which tend to be very time intensive when ESA is involved. Probably will give it a shot when a newer firmware is available. I'am somewhat fatigued about the workarounds, it's 4 months since the last…
-
Hi @RuheeSafiya this specific customer is still on 10.0.2, because it's someone I cannot explain constant segfaults (like from 10.0.3 onwards) to. But to be honest, the attachments which are viewable have non-english names as well. On my 10.0.6 installation this seems to happen as well: This specific message has a…
-
Hi @shiprasahu93 disabling IPv6 will not do the trick. I still need to configure FLB for IPv6, tested it a second ago with 6.5.4.6. Disabling IPv6 does not make IPv6 disappear what might be expected, according to the documentation it just forces the Firewall to drop IPv6: "When IPv6 is disabled, all IPv6 packets are…
-
Hi all, IPv6 (always forgetting about it) was the right direction to look at. Maybe X1 was locked to WAN in the past, but it must be ages ago, even on a Gen5 I can unassign X1. Note to my future me: Check IPv6 too, even you don't use it actively :) --Michael@BWC
-
Hi @Vijay_Kumar_KV the problem could be solved if upgrades would not need admin rights, but I'am not sure if this is technically possible. For some "HTML Portal-only" deployments I don't even have a chance to deploy the newer Agent manually, because of the lack of a VPN connection. The whole process needs to be as simple…


























