Configure an access control rule to perform intrusion prevention
Configure an access control rule to enable intrusion prevention inspection on network traffic, allowing you to detect and prevent malicious activities based on intrusion signatures and policies.
You must be an Admin, Access Admin, or Network Admin to perform this task.
Follow these steps to configure an access control rule to perform intrusion prevention:
Procedure
Step 1 | In the access control policy editor, create a new rule or edit an existing rule; see the Access Control Rule Components topic in the latest version of the Cisco Secure Firewall Management Center Configuration Guide. |
Step 2 | Ensure the rule action is set to Allow, Interactive Block, or Interactive Block with reset. |
Step 3 | Click Inspection. |
Step 4 | Choose a system-provided or a custom intrusion policy, or choose None to disable intrusion inspection for traffic that matches the access control rule. |
Step 5 | If you want to change the variable set associated with the intrusion policy, choose a value from the Variable Set drop-down list. |
Step 6 | Click Save to save the rule. |
Step 7 | Click Save to save the policy. |
What to do next
Deploy configuration changes. See Deploy configuration changes.