Got the same issue on 8.1.0. Tried the App override and it seems to be working for most sites. However, we still see same message logs randomly, every 2-10 mins. We have 50+ file servers in 7 firewall zones and uses smbv1, v2 and v3. This app override is scary as it disabled inspection on the flow which could potentially bypass ransomware attacks (such as EternalBlue) which use smb vulnerabilities. It's disappointing to see that this is not a known issue in 8.1.0 release notes even after many people reporting this in last 3-4 months. Looks like the best option is to avoid this version at any cost. Has anyone tried 8.1.1 to see if it has more fundamental issues like these?
... View more