Trend Micro™ Network VirusWall™ Enforcer 2500 Administrator’s Guide
1
-
36
•
If you want to access the URL Exception page, do not type TCP port 80 in
Application Protocol Detection
.
•
If you select the
Reject packet
action in
Application Protocol Detection
the
following occurs for:
•
TCP: TCP reset
•
UDP: ICMP Destination Port unreachable
•
ICMP: ICMP Destination Port unreachable
•
If you select the
Drop packet
action in
Application Protocol Detection
, packets
are dropped and may cause certain applications to stall.
•
If you select the
File Transfer Detection
service:
•
HTTPS is not scanned.
•
ASP upload is not scanned
•
If the action is
Reject Packet
, FTP downloads a file name with zero bytes.
•
If CIFS connections exist at the time of policy creation, the action may not
function correctly.
•
Inform endpoints of policy requirements prior to blocking them from
accessing the network. If you deploy a policy that requires endpoints to have
the latest vulnerability patch installed moments after the patch is released,
the majority of the endpoints on your network will violate this policy.
•
Selecting the monitor action for all new policies helps locate problem areas
without disrupting endpoints. This is a good way to begin deploying new
policies on your network.
•
If you select
Enable the detecting page
and select a short reassessment time
interval, endpoints will frequently see the detecting page and have to wait to
access the network. Consider disabling the detecting page to allow scans to
run in the background instead.