
Access to Firewall Client Rules on the Host IPS tab under Reporting requires additional
permissions other than that for Host Intrusion Prevention Firewall, including view permissions
for Event Log, Systems, and System Tree access.
Task
For option definitions, click ? on the page displaying the options.
1 Go to Reporting | Host IPS | Firewall Client Rules.
Figure 22: Firewall Client Rules
2 Select the group in the System Tree for which you want to display client rules.
3 Determine how you want to view the list of client rules:
Do this...To...
Select Choose Columns from the Options menu. In
the Select Columns page, add, remove, or reorder the
columns for the display.
Select columns to display
Click the column header.Sort by a column
From the Filter menu select This Group Only or This
Group and All Su/jointfilesconvert/382709/bgroups.
Filter for groups
Select the time the rule was created: None, Since, or
Between. When selecting Since, enter a beginning date;
Filter for creation time
when selecting Between, enter both a beginning and
ending date. Click Clear to remove filter settings.
Type the process path, process name, user name,
computer name, or signature ID to filter on. Click Clear
to remove filter settings.
Filter for searched text
Click Aggregate, select the criteria on which to
aggregate rules., then click OK. Click Clear to remove
aggregation settings.
Aggregate rules
4 To move rules to a policy, select one or more in the list, click Create Firewall Rule, then
indicate the policy to which to move the rules.
Configuring Firewall Policies
Working with Firewall Rules policies
63McAfee Host Intrusion Prevention 7.0 Product Guide for use with ePolicy Orchestrator 4.0
Comentarios a estos manuales