SOLVED: PCI Scanning Being Blocked

Post Reply
mr_kings
Junior Member
Posts: 2
Joined: 25 Feb 2016, 20:57

SOLVED: PCI Scanning Being Blocked

Post by mr_kings »

Hello! I hope someone can get me on the right path with this.

We have a customer who is set up with ControlScan (Axia) for their PCI compliance. The last scan resulted in a "scan may have been dynamically blocked by an IPS" for port 80.

I have PS_INTERVAL set to 0 in my CSF configuration, and I have ControlScan's scanning IP range but I'm not sure if I need to set that somewhere or not. I have blocked all non-essential ports that we aren't using (143, 995, 25, etc.) from the public.

Any ideas would help, thanks!
mr_kings
Junior Member
Posts: 2
Joined: 25 Feb 2016, 20:57

Re: SOLVED: PCI Scanning Being Blocked

Post by mr_kings »

This has been solved. I had added the scanner's IP range to csf.whitelist, but that just opened up all the ports and caused it to fail worse. However I then tried adding it to csf.ignore instead and it worked like a charm.
Post Reply