(modsec_5015) ModSec 5015: Suspicious User-Agent from 194.180.233.76 (US/United States/-): 1 in the ...
show more(modsec_5015) ModSec 5015: Suspicious User-Agent from 194.180.233.76 (US/United States/-): 1 in the last 3600 secs (0-193)
show less
Unauthorized VPN login attempts: 1 attempts were recorded from 194.180.233.76
2025-09-10T11:30:18+02 ...
show moreUnauthorized VPN login attempts: 1 attempts were recorded from 194.180.233.76
2025-09-10T11:30:18+02:00 vpn Access-Reject 'client' station: 194.180.233.76 auth-type: - realm: vse.cz nas: <redacted> called: <redacted> => address-pool: - msg: '<redacted>'
show less
Unauthorized VPN login attempts: 1 attempts were recorded from 194.180.233.76
2025-09-09T13:55:16+02 ...
show moreUnauthorized VPN login attempts: 1 attempts were recorded from 194.180.233.76
2025-09-09T13:55:16+02:00 vpn Access-Reject 'vpnuser' station: 194.180.233.76 auth-type: - realm: vse.cz nas: <redacted> called: <redacted> => address-pool: - msg: '<redacted>'
show less
Brute-Force
Web App Attack
Anonymous
SSL VPN Brute Force attempts
Brute-Force
Anonymous
Message meets Alert condition
The following critical firewall event was detected: SSL VPN login fai ...
show moreMessage meets Alert condition
The following critical firewall event was detected: SSL VPN login fail.
date=2025-05-28 time=04:15:50 devname=FortiGate-200F devid=FG200FT922906136 eventtime=1748423750495828448 tz="-0500" logid="0101039426" type="event" subtype="vpn" level="alert" vd="root" logdesc="SSL VPN login fail" action="ssl-login-fail" tunneltype="ssl-web" tunnelid=0 remip=194.180.233.76 srccountry="United States" user="jwhite" group="N/A" dst_host="N/A" reason="sslvpn_login_unknown_user" msg="SSL user failed to logged i
show less