Managing intrusion detection policies

You can create, enable, disable, delete, or change a policy; create a policy based on another policy; or change the priority of an intrusion detection policy.

Prerequisite: You must have *ALLOBJ and *IOSYSCFG authority to work with intrusion detection policies.
From the Intrusion Detection Policies page, you can perform any of the following actions:
  • To see all types of intrusion detection policies, select the All Policies view.
  • To see one type of intrusion detection policy, select the Attack Policies view, Scan Policies view, or Traffic Regulation Policies view.
  • In the Attack, Scan, or Traffic Regulation Policy views, use the Move Up and Move Down actions to change the priority of an intrusion detection policy. The policies are listed in order of priority with the highest priority policy at the top of the list.
  • To create an intrusion detection policy, select New from the Actions menu.
  • To create an intrusion detection policy based on another policy, select the policy and then select New Based On from the Actions menu.
  • To disable an intrusion detection policy, select the policy and then select Disable from the Actions menu.
  • To enable an intrusion detection policy, select the policy and then select Enable from the Actions menu.
  • To delete an intrusion detection policy, select the policy and then select Delete from the Actions menu.
  • To display the properties of an intrusion detection policy, select the policy and then select Properties from the Actions menu.
  • In the All Policies view, you also can perform additional actions to further tailor the list of policies viewed, such as sorting and filtering the policies in the table.