Hello I am testing my wildfire configuration . 1- When I download wildfire test PE file , I get an entry under Wildfire submission log & data filtering log. 2- I intend to test if copying the PE file is also caught by wildfire , so I download a new PE file from wildfire site on a machine that is not protected by wildfire , then copy it across to a machine in another zone . the rule has wildfire and block file . this time we do not get any submission but we see a record under data-filtering. why there is no wild fire submissions in this case ? in first approach , the application is web-browsing second approach , the application is ms-ds-smb Is it possible that some applications are excluded from wildfire ? it seems only Risk5 apps are being sent . is there a place to change the behavior ?
... View more