Using VSRX IDP to detect pre-triggered Attack – Metasploit Frame-Work – SCAN:MISC:HTTP:VTI-BIN-PROBE

No Comments


I was studying about IDP and as always I wanted to test the feature out. First of all, Its VSRX , so do not expect that it detects everything out of the box, but it did fairly a nice job to start with.






Description: This signature detects requests to a URL that can execute a denial of service (DoS) on Microsoft IIS with FrontPage extensions.

No attack detected as of yet and attack-Table is Empty


Configuring VSRX so that i has IDP capabilities, for more you can have look at the below post about installation Details


I have used Metasploit to attack my home lab device


As we can clearly see, SRX has detected the attack and displayed the appropriate attack-Type.



Rakesh M

Testing Endian Firewall – So Far So Good !

No Comments


I was testing Endian Firewall( for Some VPN features and Firewall capabilities. Last post I wrote about untangle. (, one thing I understood is that not everyone uses Checkpoint/asa/Srx ;), depends on Client Base/Cost/Business proposals etc.

I had to verify Endian to verify some firewall rules written for an End PBX as it was blocking. Now, I have handled Endian Before as well, but that was at a period when Endian was just getting noticed and we had to integrate it with opposite branch firewall as Endian was uplinking to Cisco ASA. – IRONY 😉

This was on the fly and you can download the community version on the go and test as well. The entire system is based on http mostly and Sort of Zone-based Firewall concept arises here.

I had setup a simple IPSEC vpn within 5 minutes

Here is the below topology


Building IPSEC Vpn and leaving at its defaults

settingup_firewall_vpn_1 vpn2 vpn3

Now, verifying few other firewall rules and adding static routing

blocking_specific_trafic_4 static_routing_5

Final result


On the Whole, Setup was quite easy and I should say I am far more impressed with this than Untangle as this is simple and easy to use.


Rakesh Madupu

Close Bitnami banner