The new docs.trellix.com features a modernized UI and AI-powered conversational search. Content is currently available in English, with additional languages launching in early November 2026. We hope you enjoy the updated experience.

Creating a custom IPS policy (CLI)

Prev Next

You can create a custom IPS policy by specifying the name of the new policy.

Prerequisites
  • Log in to the CLI of the IPS platform as Operator or Admin.

To create a custom IPS policy:

  1. Enable the CLI configuration mode.

    hostname > enable
    hostname # configure terminal
  2. Create a custom IPS policy.

    The following example creates a custom policy named myCustom1.

    hostname (config) # ips policy myCustom1
  3. Display the rule-matching attributes of the new IPS policy.

    In the following example, the new custom policy has the same match attributes as the Comprehensive default IPS policy, which does not specify rule exclusion or inclusion attributes. For more information, see Attributes of IPS policies.

    hostname (config) # show ips policies myCustom1
    Policy attributes : 
            active : no
            writable : yes
            modified_date : 2014/09/26 09:51/36
            version : 1
     
    Match attributes of policy : 
            attack-target : client
            attack-target : server
            min-severity : 1
            max-severity : 10
     
    Fingerprint of policy :x
    2014/09/26 09:51:36 | 791c1c0bcd3b604630616acac14a96b1
  4. (Optional) To modify the rule-matching attributes of the new IPS policy, see Editing the rule match attributes of an IPS policy (CLI).

  5. (Optional) To modify the rule exclusion and inclusion attributes of the new policy, see Editing the rule inclusion and exclusion attributes of an IPS policy (CLI).

  6. Save your changes.

    hostname (config) # write memory