Views:

Administrators can configure Apex One to allow, block, or log all connections between agents and user-defined C&C IP addresses.

Note:

The User-defined IP Lists only support IPv4 addresses.

  1. Go to Agents > Global Agent Settings.
  2. Click the Security Settings tab.
  3. Go to the Suspicious Connections Settings section.
  4. Click Edit User-defined IP List.
  5. On the Approved List or Blocked List tab, add the IP addresses that you want to monitor.
    Tip:

    You can configure Apex One to only log connections made to addresses in the User-defined Blocked IP list. To only log connections made to the addresses in the User-defined Blocked IP list, see Configuring Suspicious Connection Settings.

    1. Click Add.
    2. On the new screen that appears, type the IP address, IP address range, or IPv4 address and subnet mask for Apex One to monitor.
    3. Click Save.
  6. To remove IP addresses from the list, select the check box next to the address and click Delete.
  7. After configuring the lists, click Close to return to the Global Agent Settings screen.
  8. Click Save to deploy the updated list to agents.