
Working with IPS Options policies
The IPS Options policy turns on and off IPS protection and allows you to apply adaptive mode
on clients to create new exception rules.
This policy category contains three preconfigured policies and an editable My Default policy.
You can view and duplicate preconfigured policies; you can, create, edit, rename, duplicate,
delete, and export custom policies.
Preconfigured policies include:
On (McAfee Default)
• Enable Host IPS
• Enable Network IPS
• Automatically Block Network Intruders for 10 minutes
• Retain Blocked Hosts
• Retain Client Rules
Off
• Retain Blocked Hosts
• Retain Client Rules
Adaptive
• Enable Host IPS
• Enable Network IPS
• Retain Blocked Hosts
• Enable Adaptive Mode
• Retain Client Rules
On the Policy Catalog policy list page, click New Policy to create a new custom policy; click
Duplicate under Actions to create a new custom policy based on an existing policy.
Change the policy’s assignment on the Policy Assignment page. For a group, go to Systems
| System Tree, select a group, and then on the Policies tab click Edit Assignment. For a
system go to Systems | System Tree, select a group that contains the system, and then on
the System tab, select the system and select More Actions | Modify Policies on a Single
System.
Tasks
Configuring the IPS Options policy
Configuring the IPS Options policy
Use this task to turn IPS protection on and off and apply adaptive mode.
Task
For option definitions, click ? on the page displaying the options.
1 Go to Systems | Policy Catalog and select Host Intrusion Prevention: IPS in the
Product list and IPS Options in the Category list. The list of policies appears.
Configuring IPS Policies
Working with IPS Options policies
27McAfee Host Intrusion Prevention 7.0 Product Guide for use with ePolicy Orchestrator 4.0
Comentários a estes Manuais