Creating IPS Signature Static Groups
Use the IPS Signature Static Group page to configure a specific, finite set of attack objects or groups.
Static groups require more maintenance than dynamic groups because you must manually add or remove attack objects in a static group to change its members.
Use an IPS signature static group for the following tasks:
Group your custom attack objects.
Dynamic—Contains attack objects based on certain matching criteria.
Static—Contains customer-defined attack groups and can be configured through the CLI.
Before You Begin
Read the Understanding IPS Signatures topic.
Have a basic understanding of what attacks are.
Read the Creating IPS Signatures topic. See Creating IPS Signatures.
Review the IPS signatures main page for an understanding of your current data set. See IPS Policy Signatures Main Page Fields for field descriptions.
Configuring IPS Signature Static Group Setting
To configure an IPS signature static group:
- Select Configure > IPS Policy > Signatures.
- Click Create.
- Select Static Group.
- Complete the configuration according to the guidelines provided in the Table 1.
- Click OK.
A new IPS signature static group with the predefined configurations is created. You can use this signature in IPS policies.
Table 1: IPS Signature Static Group Settings
Enter a unique string of alphanumeric characters, colons, periods, dashes, and underscores. No spaces are allowed and the maximum length is 63 characters.
Add or delete group members of a static group.
Group members include custom groups whose members are predefined attacks, predefined attack groups, custom attacks, or custom dynamic groups.
A custom group defines:
Add IPS Signatures
Select one or more available IPS signatures to include in a static group.