About the Router Blocking Module

The Forescout Router Blocking Module lets you use the Cisco IOS C2600 v. 12.3, and C7606 v. 12.2 routers to better block remote computers via an Access Control List (ACL) or via NULL routing.

When working with policy detections in Forescout eyeSight, you can use the Router Block action to automatically block hosts that match your policy rules. This action is added to the Policy, Action screen when the module is activated. After activating the plugin, the Router Block icon appears in the Detections pane.

Once a host is detected and blocked by the Router, the Router icon is assigned to the detected host. You can manually release the host by right-clicking it from the Control Center and selecting Release Router Blocking. Information about hosts blocked and released by the router appears in the Detections pane and Host Details dialog box.

Supported eyeSight Version

This table lists the eyeSight version that works with each plugin version covered by this guide.

Module Version Works with eyeSight Version

1.2 and 1.2.1

8.1.x, 8.2, 8.2.1, 8.2.2, 8.3, 8.4, and 8.4.1