The IPS Policy Details provides a detailed view of the IPS policies available for application. This includes any user-created or user-cloned policies. Policy information includes severity, responses, thresholds, notifications, and other information configured for each attack from a policy. Also, you can view attack set profile and DoS settings for all of the policies applied within an admin domain.
To generate an IPS Policy Details report, do the following:
Task
- Click the Manager tab from the Manager Home page.
- Select <Admin Domain Name> → Reporting → Configuration Reports → IPS Policy Details.
-
Select one or more
Policies.
Tip
IPS Policy Reports can be very long when multiple policies are selected. Trellix recommends selecting a single policy for ease of readability.
-
Select one or more of the following based on what information you want to see in the report:
- IPS Policy Detail
- DoS Detail
- Attack Set Profile Detail
- Customized Attacks: Consolidates all user-customized attacks into one section
- Recon Attacks: This is enabled only if the selected policy is Trellix Global IDS.
- Select the Output Format.
- Click Submit.