LevelBlue Completes Acquisition of Cybereason. Learn More
Get access to immediate incident response assistance.
How do I troubleshoot pattern over-blocking?
Due to the nature of pattern based filtering, some overblocking or false-positives can occur. Pattern filtering takes precedence over normal library filtering rules, so adding the site/IP to an Allow category will not stop pattern detection from blocking the request. However, if you know the IP address that is triggering the block you can do this:
1.Admin control of pattern filtering Whitelist for R3000 Software Version 3.0.00.9 or Higher: The new Pattern Detection Whitelist window (Library > Pattern Detection Whitelist) lets you create a list of IP addresses that will always bypass pattern detection filtering.
Only the IP is needed not any ports or http://
To contact Trustwave about this article or to request support: