FireEye – Interface configuration

Details

Interfaces operate in pairs called A, B, etc. Two inline modes of operation are supported: detection mode and blocking mode. Detection mode monitors all packets and does not block any traffic. Blocking mode blocks infectious attacks, while allowing all benign packets to pass through the interface. Blocking mode allows you to customize the blocking policy with signatures and whitelists.

This security hardening control applies to the following category of controls within NIST 800-53: System and Communications Protection.This control applies to the following type of system FireEye.

References

Source

Updated on July 16, 2022
Was this article helpful?

Related Articles