Reconnaissance detection (such as OS fingerprint probes) is handled by the Firewall Protection Module, not the Intrusion Prevention Module. The other options are true:
A: Temporary blocking can be configured.
B: A permanent firewall rule can be created.
C: Reconnaissance whitelists can be used to ignore known/legitimate sources.
[References:, , Trend Micro Deep Security Administrator’s Guide: Reconnaissance Detection, , Trend Micro Deep Security Help: Reconnaissance Whitelist and Actions]
Contribute your Thoughts:
Chosen Answer:
This is a voting comment (?). You can switch to a simple comment. It is better to Upvote an existing comment if you don't have anything to add.
Submit