Configuring X-Force Virtual Patch

Use X-Force Virtual Patch functionality on your Network IPS appliance to configure the block and quarantine responses automatically for events that X-Force® recommends.

About this task

Navigating in IPS Local Management Interface: Secure Protection Settings > Security Modules > X-Force Virtual Patch

Note: Settings on the X-Force Virtual Patch page do not apply to security events marked as User Overridden on the Security Events page. Set X-Force settings before customizing security events. To find out what security events are marked User Overridden, group events by User Overridden on the Security Events page.

Procedure

  1. Choose one of the following options in the Enable X-Force recommended blocks area.
    Option Description
    Always Enables the block and quarantine responses X-Force recommends for security events.
    Note: X-Force blocking is enabled by default.
    Through XPU Enables X-Force recommended block and quarantine responses for X-Press Updates (XPU) up to and including a specific version.
    Never Specifies to not use X-Force recommended block and quarantine responses.
  2. Apply your settings.