What can I do here?
Use this window to view Threat Prevention protections and their settings.
For configuring individual inspections, see: Inspection Settings
Getting Here - Manage & Settings > Blades > General > Inspection Settings > General
|
You can configure inspection settings for the Firewall:
The Security Management Server comes with two preconfigured inspection profiles for the Firewall:
When you configure a Security Gateway, the Default Inspection profile is enabled for it. You can also assign the Recommended Inspection profile to the Security Gateway, or to create a custom profile and assign it to the Security Gateway.
To activate the Inspection Settings, install the Access Control Policy.
Note - In a pre-R80 SmartConsole, Inspection Settings are configured as IPS Protections.
To configure Inspection Settings:
The Inspection Settings window opens.
You can:
To edit a setting:
The settings window opens.
Select Capture Packets, if you want to be able to examine packets that were blocked in Drop rules.
For advanced configuration of SYN attacks, please see sk120476.
To view settings for a certain profile:
Only settings for the selected profiles are shown.
You can add, edit, clone, or delete custom Inspection Settings profiles.
To edit a custom Inspection Settings profile:
To add a new Inspection Settings profile:
To assign an Inspection Settings profile to a Security Gateway:
To configure exceptions to inspection settings:
The Exception Rule window opens.
To enforce the changes, install the Access Control Policy.
Column |
Description |
---|---|
Protection |
Name of the protection |
Performance Impact |
How much this protection and its resources affect gateway or server performance |
Profile |
Displays profiles created on the Profiles page |