Examples: User-defined variables in custom sets

A user-defined variable in a custom set is a configuration element that:

  • enables you to add variables to custom sets,

  • allows you to choose whether the configured value becomes the default for other sets, and

  • affects how variable values and interactions propagate across sets.

Variable set interactions and default value behavior

When you add a user-defined variable to a custom set, you are prompted to decide if the configured value should be used as the default value for other sets. The examples illustrate the outcomes of each choice.

  • Choosing to use the configured value as the default copies the value to the default set as a customized value, with a default value of any.

  • Choosing not to use the configured value as the default adds the variable to all sets with a default value of any, allowing customization in any set.

Note

Further customizing or resetting a variable in the default set updates the current, default value in other sets, which can affect any intrusion policy linked to the variable set.

Examples of adding user-defined variables to custom sets

The first example shows adding Var1 with the value 192.168.1.0/24 to Custom Set 1 and electing to use the configured value as the default for other sets.

Variable set interaction when using the configured value as default

Variable set interaction illustrates how user-defined variables, such as Var1 with the value 192.168.1.0/24, are added to Custom Set 1 and used as defaults for other sets.

Except for the origin of Var1 from Custom Set 1, this example is identical to adding Var1 to the default set. Adding the customized value 192.168.1.0/24 for Var1 to Custom Set 1 copies the value to the default set as a customized value with a default value of any. Thereafter, Var1 values and interactions are the same as if you had added Var1 to the default set. Further customizing or resetting Var1 in the default set updates the current, default value of Var1 in Custom Set 2, affecting any intrusion policy linked to the variable set.

Adding a variable and not using the configured value as default

The second example shows adding Var1 with the value 192.168.1.0/24 to Custom Set 1, but electing not to use the configured value as the default in other sets.

Variable set interaction when not using the configured value as default

The diagram illustrates the interaction of variable sets when Var1 is added with the value 192.168.1.0/24 to Custom Set 1 without using the configured value as the default in other sets. This approach allows customization of Var1's value in any set while minimizing the risk of unintended changes in the default set.

This approach adds Var1 to all sets with a default value of any. After adding Var1, you can customize its value in any set. An advantage of this approach is that, by not initially customizing Var1 in the default set, you decrease your risk of customizing the value in the default set and inadvertently changing the current value in a set such as Custom Set 2 where you have not customized Var1.