FireEye – Greylists are enabled

Details

Greylists provide control over the priority of workorders for known IP addresses and URLs. Greylists contain files that contain either URLs or IP addresses and are used by the FireEye web analysis engine to check if the specified URLs or IP addresses contain a malicious rule match. NOTE: The Greylist page does not display in the Settings tab of the Web MPS GUI until the feature is enabled from the FireEye CLI.

Solution

Edit the configuration and modify this line:n

web-analysis greylists enable

This security hardening control applies to the following category of controls within NIST 800-53: Configuration Management.This control applies to the following type of system FireEye.

References

Source

Updated on July 16, 2022
Was this article helpful?

Related Articles