You can perform the following operations on an existing Advanced Malware policy.
| Operation | Description |
|---|---|
| View Advanced Malware policies | The Advanced Malware policies page allows you to view the Malware policies that have been assigned to the various resources of your Trellix IPS. Policies are listed per the Sensor, interface, and subinterface. From the root admin domain, you can see policies assigned to all child domains. For non-root parent domains, you only see the assigned policies in your parent and child domains. For child domains, you only see the policies assigned to the resources in your domain. Select Policy → <Admin Domain Name> → Policy Types → Advanced Malware to view the assigned Malware policies. |
| Edit an Advanced Malware policy | Editing an Advanced Malware policy allows you to make the changes necessary to match the policy with the traffic you are monitoring. Editing a policy permanently changes that policy. If you intend to make slight changes to a policy but want to save it under a different name, try cloning an Advanced Malware policy.
To edit an Advanced Malware policy:
|
| Clone an Advanced Malware policy | Cloning duplicates an existing policy, and is similar to a "save as" function. You can edit a
Trellix IPS-provided policy. However, if you want to edit a copy of a policy, you can clone any existing policy to further refine the policy for application in a new environment. You can clone a provided policy, save it under a new name, and customize it for your unique environment.
|
| Delete an Advanced Malware policy | To delete an Advanced Malware policy you have created:
|
| Export an Advanced Malware policy | You can export and save one or more Advanced Malware policies into a file.
|
| Import an Advanced Malware policy | You can import an Advanced Malware policy from a saved file.
|