- Access exclusive content
- Connect with peers
- Share your expertise
- Find support resources
06-12-2014 10:39 AM
I have been working on getting our ACC threat risk down to a respectable level...currently ~4.0. I noticed that if I navigate to the Objects>Applications menu, and click on an application, the screen displays a section called "Classification". Under this section I have the ability to customize the Risk value (i.e. 1 - 5). DNS for example has a Risk value of 4. Is this value a description of the inherent risk in using DNS? Or if I modified the Value of DNS from say 4 to 3 will it change the way DNS is treated by ACC? If I change the value, will it just alter the ACC threat level to something more pleasing to the eye, but not change the way the firewall treats DNS traffic? Or will the firewall now treat DNS traffic differently?
Is this just a cosmetic change, or will this effect traffic?
06-13-2014 01:09 PM
It is just cosmetic; so by reducing these risk assignments you may reduce your ACC risk score but you've not reduced the security risk in your network.
Note that if you're using application filters - with the risk score as a parameter - and you lower the risk rating on applications you may start allowing these applications through your firewall and therefore increasing the actual risk to the network!
I guess reducing ACC is just the hard task of locking down the network. I need to confess to not looking too much at my ACC values. 😕
06-13-2014 01:09 PM
It is just cosmetic; so by reducing these risk assignments you may reduce your ACC risk score but you've not reduced the security risk in your network.
Note that if you're using application filters - with the risk score as a parameter - and you lower the risk rating on applications you may start allowing these applications through your firewall and therefore increasing the actual risk to the network!
I guess reducing ACC is just the hard task of locking down the network. I need to confess to not looking too much at my ACC values. 😕
Click Accept as Solution to acknowledge that the answer to your question has been provided.
The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!
These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!
The LIVEcommunity thanks you for your participation!