Views:

Command Line Interface (CLI):

 

The command show filter <filter number> will display the status of the filter designated by filter number.

 

For example, to display the status for filter 7120 use the following command: # show filter 7120


7120: TCP: Segment Overlap With Different Data, e.g., Fragroute
   1 instances found:
Default Security Profile
   Config: Enabled    AFC: Enabled    Category: Block / Notify
                           Exception(s): Source: 192.168.10.10     Dest: 0.0.0.0/0

The information displayed shows that filter 7120 is for "Segment Overlap With Different Data" and it is Enabled on the Default Security Profile.

 

Procedure:

  1. Click on Policy > Profiles > IPS, on navigation bar.
  2. On the IPS Profile window, double-click on the Profile that is to be to searched.
  3. Select the IPS Filter Overrides tab and click Search.
  4. On the IPS Filter Search window, enter the one or more of the following:
    • Keyword(s): for filter name search
    • Filter #: for filter number search
    • Filter State: to search within Any, Enabled or Disabled filters
    • Filter Control: to search within Any, Category Settings or Override filters
    • Categories: option to search within a selected category or categories
    • Action Set: option to search within a selected action set or action sets
    • Protocol: option to search within a selected protocols
    • Severity: option to search within a selected severities
  5. Once the search criteria have been set, click on "Search".
    • The results will be displayed below under "Filter List".
    • The status of the filter for this profile is listed in the "State" Column.