Jump to content

Archived

This topic is now archived and is closed to further replies.

jduvillard

Rogue entries in ERA6

Recommended Posts

Hello,

 

ERA Version 6.1.444.0 installed on Windows Server 2008 R2 SP1

 

I have 2 issues with the rogue detection service:

 

1- As far as I can see, some computers in the list of rogue computers don't exist in any DHCP, DNS or AD tables. Where is the rogue information coming from?

 

2- I have many printers and routers in this list with the wrong name associated with the MAC addresses. When I move them to a Static Folder, they are removed from the rogue entry list (which is good), however as soon as I rename them in my static folder, they appear again in the rogue list.

 

Any suggestion?

 

JP

Share this post


Link to post
Share on other sites

It sounds like I am the only person affected by these issues.

 

Am I missing a trick here?

Share this post


Link to post
Share on other sites

Can you create a policy that applies to the RDS sensor, I believe there are options for white/blacklisting IP's?  Might not be quite the answer your looking for but better than nothing.

Share this post


Link to post
Share on other sites

Yes indeed!

 

I was missing a Rogue Sensor policy which allowed me to blacklist the IP addresses of our printers and non-computer devices.

 

This may not solve the original problem, but things are looking a lot more tidy now.

 

Thank you Ben

Share this post


Link to post
Share on other sites

  • Recently Browsing   0 members

    No registered users viewing this page.

×
×
  • Create New...