Cisco Cisco FirePOWER Appliance 7115

Seite von 2442
Version 5.3
Sourcefire 3D System User Guide
772
Managing Rules in an Intrusion Policy
Setting Rule States
Chapter 20
2. Click the edit icon (
) next to the policy you want to edit.
If you have unsaved changes in another policy, click OK to discard those 
changes and continue. See 
for information on saving unsaved changes in another policy.
The Policy Information page appears.
Note that this page indicates the total number of enabled rules and the total 
number of enabled rules set to Generate Events and the total number set to 
Drop and Generate Events. Note also that in a passive deployment, rules set 
to Drop and Generate Events only generate events.
3. Click Manage Rules on the Policy Information page.
The Rules page appears. By default, the page lists the rules alphabetically by 
message. 
4. Locate the rule or rules where you want to set the rule state. You have the 
following options:
To sort the current display, click on a column heading or icon. To reverse 
the sort, click again.
Construct a filter by clicking on keywords or arguments in the filter 
panel on the left. For more information, see the following topics: 
The page refreshes to display all matching rules.