Page 1 of 1

SOLVED: PCI Scanning Being Blocked

Posted: 25 Feb 2016, 21:07
by mr_kings
Hello! I hope someone can get me on the right path with this.

We have a customer who is set up with ControlScan (Axia) for their PCI compliance. The last scan resulted in a "scan may have been dynamically blocked by an IPS" for port 80.

I have PS_INTERVAL set to 0 in my CSF configuration, and I have ControlScan's scanning IP range but I'm not sure if I need to set that somewhere or not. I have blocked all non-essential ports that we aren't using (143, 995, 25, etc.) from the public.

Any ideas would help, thanks!

Re: SOLVED: PCI Scanning Being Blocked

Posted: 01 Mar 2016, 00:30
by mr_kings
This has been solved. I had added the scanner's IP range to csf.whitelist, but that just opened up all the ports and caused it to fail worse. However I then tried adding it to csf.ignore instead and it worked like a charm.