The IPS Policy Details report provides a detailed view of the IPS policies available for application. This includes any user-created or user-cloned policies. Policy information includes severity, responses, thresholds, notifications, and other information configured for each attack from a policy. Also, you can view attack set profile and DoS settings for all of the policies applied within an admin domain.
To generate the report, do the following:
Steps:
Click the Manager tab from the Manager Home page.
Select <Admin Domain Name> → Reporting → Configuration Reports → IPS Policy Details.
Select the Report Format.
Select one or more Policies.
Tip
IPS Policy Reports can be very long when multiple policies are selected. Trellix recommends selecting a single policy for ease of readability.
Select one or more of the following based on what information you want to see in the report:
IPS Policy Detail
DoS Detail
Attack Set Profile Detail
Customized Attacks: Consolidates all user-customized attacks into one section
Recon Attacks: This is enabled only if the selected policy is Trellix Global IDS.
Click Run.