This section describes the menu options that are available in Custom Attack Editor.
.png)
Option | Definition |
|---|---|
Applicable to Native Trellix IPS Format and Snort Format | |
![]() | Click to define a custom attack. You can either create an exploit attack or a reconnaissance attack. You need to create an attack before adding signatures to it. |
![]() | Click to copy an existing custom attack. |
![]() | Click to delete the selected attack from the Manager client. To delete it from the Manager server, you need to click Save after you delete it from the client. |
Export | Select this option to export the custom attacks in the Manager to a file. |
Test Compile | Click to Test Compile the selected custom attacks. |
Import | Select this menu to import Native Trellix IPS Format or Snort Format custom attack from files to the Manager. |
Check Attack Counts | Click to view the count of published custom attacks. |
Export All | Click to export all the custom attacks in the Manager to a file. |
Manage Grepping Protocols | Click to Manage Grepping Protocols. |
Save as CSV | Click to save the custom attacks in CSV format. |
Applicable to Snort Format | |
Snort Variables | Click to manage Snort Variables. |
Important
Before you delete a custom-defined protocol, make sure it is not used in any of the Trellix IPS Custom Attacks.
.png)
.png)
.png)