Create and Manage IPS Signature Static Groups
The signature database in Juniper Security Director Cloud contains predefined intrusion prevention system (IPS) signature static groups.
You can create customized IPS signature static groups from the Create IPS Signature Static Group page. You must have the tenant administrator role or a custom role assigned with the appropriate IPS tasks to create customized IPS signature static groups.
Static groups enable better manageability because you can group different types of signatures into one entity.
Create IPS Signature Static Groups
Manage IPS Signature Static Groups
You must have the tenant administrator role or a customized role assigned with the appropriate IPS tasks to modify customized IPS signature static groups.
-
Edit—Select the group, and then click the pencil icon (
). You cannot modify the group name.
If the group was used in an IPS rule or exempt rule that is deployed on the device through the firewall policy, then the firewall policy is marked for deployment. You must deploy the firewall policy for the changes to take effect on the device.
-
Clone—Select the group, and then click . You can clone predefined or customized groups and modify the parameters.
You can use the cloned group in an IPS rule or an exempt rule. You can then reference the IPS profile containing the rule in a firewall policy, which you can deploy on the device.
-
Delete—Select the group, and then click the trash can icon (
). You can delete only customized (user-created) groups that are not used in an IPS or exempt rule. You cannot delete predefined (system-generated) groups.