Creating IPS Signature Static Groups
Before You Begin
Read the Understanding IPS Signatures topic.
Have a basic understanding of what attacks are.
Read the Creating IPS Signatures topic. See Creating IPS Signatures.
Review the IPS signatures main page for an understanding of your current data set. See IPS Policy Signatures Main Page Fields for field descriptions.
Use the IPS Signature Static Group page to configure a specific, finite set of attack objects or groups.
Static groups require more maintenance than dynamic groups because you must manually add or remove attack objects in a static group to change its members.
Use an IPS signature static group for the following tasks:
Group your custom attack objects.
Dynamic—Contains attack objects based on certain matching criteria.
Static—Contains customer-defined attack groups and can be configured through the CLI.
To configure an IPS signature static group:
- Select Configure > IPS Policy > Signatures.
- Click Create.
- Select Static Group.
- Complete the configuration according to the guidelines provided in the Table 1.
- Click OK.
A new IPS signature static group with the predefined configurations is created. You can use this signature in IPS policies.
Settings |
Guidelines |
---|---|
Name |
Enter a unique string of alphanumeric characters, colons, periods, dashes, and underscores. No spaces are allowed and the maximum length is 63 characters. |
Group Members |
Add or delete group members of a static group. Group members include custom groups whose members are predefined attacks, predefined attack groups, custom attacks, or custom dynamic groups. A custom group defines:
|
Add IPS Signatures |
|
IPS Signatures |
Select one or more available IPS signatures to include in a static group. |