Endpoint (Traps) Discussions
Traps Advanced Endpoint Protection prevents cyber breaches by protecting and enabling users to conduct their daily activities, and automating prevention by autonomously reprogramming itself using threat intelligence gained from WildFire.
cancel
Showing results for 
Search instead for 
Did you mean: 
Endpoint (Traps) Discussions
Traps Advanced Endpoint Protection prevents cyber breaches by protecting and enabling users to conduct their daily activities, and automating prevention by autonomously reprogramming itself using threat intelligence gained from WildFire.
About Endpoint (Traps) Discussions

Welcome to the Endpoint discussion forum! We encourage you to ask questions, propose solutions, and collaborate on ideas to better secure your endpoints with Traps.

Discussions

URL/IP/Ports used by traps 5

Hello,

 

somebody knows what IP/PORT(s)/ are used by traps v5 to comunicate with the web console?
I just check my syslog events and I found my firewall block two IPs address and one port looking from my lan, my network admin realease my ip for touch the

...

wtobar by L2 Linker
  • 2046 Views
  • 2 replies
  • 0 Likes

Resolved! Traps 4.1 WildFire Post Detection

Hi,

 

We are getting several "WildFire Post Detection" events. The source signer is unknown (or not signed at all).

 

Unlike files that are often identified as malware, only to be analysed in WildFire and come back as benign, these files remain as verdic

...

SARowe_NZ by L3 Networker
  • 4941 Views
  • 1 replies
  • 0 Likes

Resolved! ESM 4.1.3 add a user with a hardcoded Password!

Hi,

 

I have read the following and had to laugh: "Changes to Default Behavior in Traps 4.1.3" :

 

For enhanced security, files in the web-based forensics (BITS upload) folder are no longer accessible to any device except the Endpoint Security Manager (E

...

fhu_omi by L3 Networker
  • 4626 Views
  • 5 replies
  • 0 Likes

Resolved! Wildfire Upload in a two ESM DMZ Setup

Hi,

 

Can someone explain how in a DMZ environment a DMZ agent sends its files to be checked to the Wildfire Cloud?
Does the ESM have to be installed with the console, mostly the internal ESM, have access to the BITS folder on the DMZ ESM, if so why?
Doe

...

fhu_omi by L3 Networker
  • 3927 Views
  • 4 replies
  • 0 Likes

Windows Temp

Is it a good practice to block executables from running from C:\Windows\Temp Folder?

 

Is there the chance of blocking legitamate apps trying to run ?

Traps stopping in notification mode

Hi,

 

I'm deploying Traps and some users have detected that Traps is stopping a document signing proccess. Java.exe and jp2launcher.exe are the affected proccess. Also both proccess are unprotected.

 

I also have checked the EPM rules looking for a rule

...