Posted By
Joe Karam
02-28-2025 11:54:14 AM
Found In
Egroup:
Enterprise Monitoring
\
view thread
While we have some of the mitigations in place with syslog alerts, DHCP snooping and ARP inspection, we are building out other behavior analysis intelligence with extraHOP. I created two different device groups with the following logic: If the vendor MAC address is an IoT device like Lutron, Siemens, ...
|