Use Response Tuning on your Network
IPS appliance
to configure quarantine rules and to set responses to events. Use
it to tune responses in your security policies with response filters
and to configure rolling packet capture settings.
Configuring quarantine rules
Use the Quarantine Rules page on your Network
IPS appliance
to add new rules and to view rules dynamically generated in response
to detected intruder events. These rules prevent worms from spreading
and deny access to systems that are infected with back doors or Trojan
horses.
Configuring responses Responses dictate how the appliance
notifies you when it detects an intrusion or other important event.
Create responses and then apply them to events as necessary.
Configuring response filters
Use Response Filters on your Network
IPS appliance
to control response numbers, to control PAM parameters, and to control
how the appliance responds to events triggered by PAM parameters.
Configuring rolling packet capture settings
Use the Rolling Packet Capture Settings page
on your Network
IPS appliance
to configure how the appliance captures and stores network packet
information.