Intrusion Rule Configuration Filters
You can filter the rules listed in the Rules page by several rule configuration settings. For example, if you want to view the set of rules whose rule state does not match the recommended rule state, you can filter on rule state by selecting Does not match recommendation.
When you choose a keyword by clicking on a node in the criteria list, you can supply the argument you want to filter by. If that keyword is already used in the filter, the argument you supply replaces the existing argument for that keyword.
For example, if you click
Drop and Generate Events under
in the filter panel,
Recommendation:"Drop and Generate Events"
is added to
the filter text box. If you then click
Generate Events under
, the filter changes to
Recommendation:"Generate Events"
.