iNotes 8.5.2 triggering port scan blocking from SNORT

We have iNotes serving up to our international users. We use SNORT on our corporate firewall to detect intrusion attempts. One of the basic detections we employ is port scanning detection.

Since we updated to Domino 8.5.2 I have had to turn off port scan detection on my firewall because it has been triggered by all of my iNotes users.

Anyone got any clues as to what might be the case here/ Like I said, this was never an issue till 8.5.2, and only my iNotes users are getting blocked.

We have had a similar problem with all versions of iNotes when we use deep packet inspection. iNotes does some pretty sketchy redirects, and that was triggering blocks as well. I have since fixed that by tweaking my HTTP scan rules. Still, it’s frustrating when legitimate software appears to intrusion detection systems as suspect.