Command Line Interface (CLI):
The command show filter <filter number> will display the status of the filter designated by filter number.
For example, to display the status for filter 7120 use the following command: # show filter 7120
7120: TCP: Segment Overlap With Different Data, e.g., Fragroute
1 instances found:
Default Security Profile Config: Enabled AFC: Enabled Category: Block / Notify
Exception(s): Source: 192.168.10.10 Dest: 0.0.0.0/0
The information displayed shows that filter 7120 is for "Segment Overlap With Different Data" and it is Enabled on the Default Security Profile.
Procedure:
- Click on Policy > Profiles > IPS, on navigation bar.
- On the IPS Profile window, double-click on the Profile that is to be to searched.
- Select the IPS Filter Overrides tab and click Search.
- On the IPS Filter Search window, enter the one or more of the following:
- Keyword(s): for filter name search
- Filter #: for filter number search
- Filter State: to search within Any, Enabled or Disabled filters
- Filter Control: to search within Any, Category Settings or Override filters
- Categories: option to search within a selected category or categories
- Action Set: option to search within a selected action set or action sets
- Protocol: option to search within a selected protocols
- Severity: option to search within a selected severities
- Once the search criteria have been set, click on "Search".
- The results will be displayed below under "Filter List".
- The status of the filter for this profile is listed in the "State" Column.