i have fw-1 box 4.1
someone out there tried to compromise my network,
and i can see from fw-log
my quetions are,
1. can i block some IP which action "drop" w/o
create rule in policy editor.
2. sometimes when i retrived logs , i got
"management Gui"(console for fw) is in source and point to
destination IP public, which service netbios-ns. Is it dangerous or i
create wrong rule ?"
tks
|