Receiver for Mac – Error: “Cannot connect to server” when custom disclaimer is configured

When custom disclaimer is added to the SCRIPT.JS file in C:inetpubwwwrootCitrixStoreWebCustom , Receiver for Mac breaks with the message ” Cannot Connect to Server. Please check your network and try again“.

Windows devices are not affected.

Related:

IPS exclusions – Endpoint Protection small business edition cloud

I need a solution

Regular vulnerability scanning is now a part of daily life when supporting a computer network.

We run an internal vulnerability scanning system, so that we can ensure that we’re aware of and can mitigateresolve any known vulnerabilities found on our systems. However, the IPS functionality provided by the Endpoint Protection client is blocking the scans when we run them, thereby preventing us from being able to get a proper idea of any vulnerabilities that may be present.

The IPS functionality doesn’t have an option to exclude a specific host, so the only way we can currently get a complete scan result is to disable the IPS completely, which subsequently means the target machine(s) are undefended from attacks from any source.

I would like there to be a way to exclude a specific host to enable inhouse scanning, whilst still preventing attacks from outside sources.

It is good that the IPS blocks the attacks that it does, when we run a scan; but that doesn’t help were the IPS service to fail on a machine or multiple machines, and it exposed a vulnerability that we would otherwise have addressed. Leaving the client totally unprotected whilst running vulnerability scans (again, from a specific, trusted host), really isn’t a viable option.

0

Related:

Vulnerability scanning – alert notifications for IPS

I need a solution

Our company has moved to a weekly scanning routine using a Nessus product.  We are running the latest Symantec Endpoint Protection 14.x console and clients.

We currently have notifications setup to send emails to administrators when any IPS event is triggered.  This creates a lot of notifications for expected port/vulnerability scans.  We do not use the Symantec Firewall – the firewall policy is disabled on all client groups.

I know I can create and exception that would ignore IPS events from a particular IP address in the Symantec Firewall, but since we don’t use the firewall I’m not sure how we would accomplish this.

  • Is there a way to ignore any IPS events coming from the IP address of the Nessus scanning server but not ignore any going to the same IP address?  If possible, I would like to receive notifications if there were port scan attacks coming INTO the Nessus scanning server.
  • Related, we have a separate SEPM server in our DMZ.  We want to receive email notifications for any IPS events there, and we have it configured that way already – but, we would like to not receive notifications for IPS events that have been BLOCKED.  I’ve looked everywhere and can’t find how to do that.  There shold be an option to not receive notifications for events that have been blocked and only have them logged.  It’s a near impossible task to review all the emails for all the port and vulnerabilities from the internet against DMZ servers.  Is there a way to accomplish this?
0

1519217673

Related: