Managed Sentinel – Alert 238
Alert ID | MS-A238 |
Alert Name | Internal systems exposing a large number of protocols to Internet |
Description | This alert identifies hosts that are accepting more than 5 protocols from Internet sources. This may indicate misconfigured firewall rules. |
Severity Level | Medium |
Threat Indicator | |
MITRE ATT&CK Tactics | Discovery |
Log sources | Common Security Log |
False Positives | |
Recommendations |