Project

General

Profile

Actions

Feature #1002

open

Possible to disabling/bypassing a rule by a specific source ip and a destination ip?

Added by Hang Cheung over 10 years ago. Updated about 5 years ago.

Status:
New
Priority:
Normal
Target version:
Effort:
Difficulty:
Label:

Description

Dear Support,

In IDS mode, we could suppress the alert by defining a "track by_src" / "track by_dst". Is it possible to do the same in IPS mode, disabling a particular rule, when a source ip / destination ip / both matched, without modifying the rule itself?

Regards,
Hang

Actions

Also available in: Atom PDF