- Access exclusive content
- Connect with peers
- Share your expertise
- Find support resources
Enhanced Security Measures in Place: To ensure a safer experience, we’ve implemented additional, temporary security measures for all users.
03-30-2017 03:47 PM
Hello
I am testing my wildfire configuration .
1- When I download wildfire test PE file , I get an entry under Wildfire submission log & data filtering log.
2- I intend to test if copying the PE file is also caught by wildfire , so I download a new PE file from wildfire site on a machine that is not protected by wildfire , then copy it across to a machine in another zone . the rule has wildfire and block file . this time we do not get any submission but we see a record under data-filtering.
why there is no wild fire submissions in this case ?
in first approach , the application is web-browsing
second approach , the application is ms-ds-smb
Is it possible that some applications are excluded from wildfire ? it seems only Risk5 apps are being sent . is there a place to change the behavior ?