Check1t_282465
May 02, 2018Nimbostratus
IP Intelligence troubleshooting
Recently renewed IP intelligence license on VE with LTM, ASM running on 12.1.1. Post update, left IP Intelligence in alarm/blocking mode for all categories (scanners, Windows exploits, etc.) for applicable Policies. I have not seen a single illegal event for VIP receiving substantial traffic in over 24 hours.
Confirmed: - Via command line command tmsh list sys db iprep.autoupdate that IP Intelligence is enabled. - Big IP can reach vector.brightcloud.com:443 - GUI notes IP Intelligence being received (most recent this afternoon) I checked event viewer and filtered for any events noting access from malicious IP. None. Filtered against specific IP Intelligence categories in event viewer, still nothing.
Are there any recommendations for troubleshooting options prior to contacting support? Thank you.