Ive been using IM360 for a few months and I cant tell if its doing much.
For instance, Im looking at Incidents log and it shows hundreds of attempts from same IP over hours to login into non-existent ftp user. How come its not getting added to grey list?
IM360 only seems to be detecting bad ftp logins. Hundreds of pages but its not ftp I worry about. Its Wordpress.
We host a lot of Wordpress sites and I would have expected IM360 to show a lot of IDS activity there as well but all I see are failed ftp logins.
How about other types of IDS events?
Am I missing something?
It would be nice to see some Wordpress specific IDS management and logging and by user.
Thanks
Glenn
For instance, Im looking at Incidents log and it shows hundreds of attempts from same IP over hours to login into non-existent ftp user. How come its not getting added to grey list?
IM360 only seems to be detecting bad ftp logins. Hundreds of pages but its not ftp I worry about. Its Wordpress.
We host a lot of Wordpress sites and I would have expected IM360 to show a lot of IDS activity there as well but all I see are failed ftp logins.
How about other types of IDS events?
Am I missing something?
It would be nice to see some Wordpress specific IDS management and logging and by user.
Thanks
Glenn
Comment