Hi all, I found a previous post at (https://www-secure.symantec.com/connect/forums/sep...) but no resolution.
I just created a test firewall rule to write to the Traffic log if a client tries to access the remote DNS domain "*.microsoft.com". When I go to the client and browse to www.google.com, no log is created. But if I browse to www.microsoft.com, it logs an entry to the local Traffic log just as it should.
However, the SEPM console does not show this logging activity. when I go to the SEPM console>Monitors>Logs>Log type=Network Threat Protection and choose Traffic as the Log content, I do not see anything from this client whatsoever. There are lots of other log entries from other clients and their rules and things going on; but nothing for this firewall rule.
Why is the SEPM console Network Threat Proection log not showing this?
Thanks,
Tom.