Wondering if anybody has seen this before. We have a few apple machines that connect to our windows server for files and what not. Sometimes when they try to connect, IPS sees it as a attack, sig id = 2231 to be exact. Before I make it okay, I just want to verify if this is just a false positive or if anybody has ran into this before that can show me a direction to finding out if it is a threat or not.
Yes, the server in question is running 8.0.2239. I don't mind if it is a false positive, I just want to make sure. If it is, I'll just add an exclusion for the 4-5 mac systems causing this issue into the IPS.
Message was edited by: awsomaha on 6/20/13 6:49:56 AM CDT