Fortgate 60E が攻撃されるかもしれない警告メール

2月20日 10:00 最後の通信

Message meets Alert condition 
date=2022-01-31 time=20:10:16 devname=RHP-SINET-FW01 devid=FGT60E4Q17034840 logid="0316013056" type="utm" subtype="webfilter" eventtype="ftgd_blk" level="warning" vd="root" eventtime=1643627416 policyid=6 sessionid=396195275 srcip=10.251.101.1 srcport=55091 srcintf="InsideLAN" srcintfrole="lan" dstip=117.18.237.29 dstport=80 dstintf="wan1" dstintfrole="wan" proto=6 service="HTTP" hostname="ocsp.digicert.com" profile="default" action="blocked" reqtype="direct" url="/MFEwTzBNMEswSTAJBgUrDgMCGgUABBSAUQYBMq2awn1Rh6Doh%2FsBYgFV7gQUA95QNVbRTLtm8KPiGxvDl7I90VUCEAJ0LqoXyo4hxxe7H%2Fz9DKA%3D" sentbyte=235 rcvdbyte=0 direction="outgoing" msg="URL belongs to a denied category in policy" method="domain" cat=50 catdesc="Information and Computer Security" crscore=30 crlevel="high"   



Message meets Alert condition
date=2022-01-31 time=20:10:16 devname=RHP-SINET-FW01 devid=FGT60E4Q17034840 logid="0316013056" type="utm" subtype="webfilter" eventtype="ftgd_blk" level="warning" vd="root" eventtime=1643627416 policyid=6 sessionid=396195280 srcip=10.251.101.1 srcport=55093 srcintf="InsideLAN" srcintfrole="lan" dstip=117.18.237.29 dstport=80 dstintf="wan1" dstintfrole="wan" proto=6 service="HTTP" hostname="crl4.digicert.com" profile="default" action="blocked" reqtype="direct" url="/DigiCertGlobalRootCA.crl" sentbyte=141 rcvdbyte=0 direction="outgoing" msg="URL belongs to a denied category in policy" method="domain" cat=50 catdesc="Information and Computer Security" crscore=30 crlevel="high"

Message meets Alert condition
date=2022-01-31 time=20:10:16 devname=RHP-SINET-FW01 devid=FGT60E4Q17034840 logid="0316013056" type="utm" subtype="webfilter" eventtype="ftgd_blk" level="warning" vd="root" eventtime=1643627416 policyid=6 sessionid=396195278 srcip=10.251.101.1 srcport=55092 srcintf="InsideLAN" srcintfrole="lan" dstip=117.18.237.29 dstport=80 dstintf="wan1" dstintfrole="wan" proto=6 service="HTTP" hostname="crl3.digicert.com" profile="default" action="blocked" reqtype="direct" url="/DigiCertGlobalRootCA.crl" sentbyte=141 rcvdbyte=0 direction="outgoing" msg="URL belongs to a denied category in policy" method="domain" cat=50 catdesc="Information and Computer Security" crscore=30 crlevel="high"


コメント

人気の投稿