Document toolboxDocument toolbox

Classification Guide

Each threat indicator belongs to a specific class and has a default expiration time (TTL). Expired threat indicators are still available in the database and returned by a search, but they are not included in the Infoblox/DNS Firewall feeds. The Cyber Threat Intelligence team periodically checks the indicators for validity and accuracy. The Threat Classification guide can be located through the Infoblox Portal at Monitor > Research > Resources > Classification Guide.

The Threat Classification page inside the Cloud Services Portal.
Image: The Threat Classification page inside the Infoblox Portal.

 

 

Â