cancel
Showing results for 
Search instead for 
Did you mean: 

Detecting rogue systems, anyone use this?

Hello,

I am using the detectig rougue systems option on ePo 4.5.  I only want to to detect systems on certain subnets, is this possible?

I seem to be getting systems on people home networks when the login via our VPN system.  If I can say to the ePo server only worry about certain subnets then is should help.

Thanks

2 Replies
tonyb99
Level 13
Report Inappropriate Content
Message 2 of 3

Re: Detecting rogue systems, anyone use this?

You can alter the RSD policy (within the standard policy settings) to only pay attention to the subnets you want/exclude those you dont

Re: Detecting rogue systems, anyone use this?

Thanks,

I have just gone to - Rogue System Detection 4.5.0:Policy > General > My Default> detection and added all the IP ranges to include, but I'm still getting a few stange IP's pop up.

Also what is confusing me is under interfaces the option - Only listen on interfaces whose IP addresses are included in the  following networks:is select but no Ip ranges in here.

Please advice

More McAfee Tools to Help You
  • How-to: Endpoint Removal Tool
  • Support: Endpoint Security
  • Visit: Business Service Portal
  • More: Search Knowledge Articles
  • ePolicy Orchestrator Support

    • Download the new ePolicy Orchestrator (ePO) Support Center Extension which simplifies ePO management and provides support resources directly in the console. Learn more about ePO Support Center