Specify a policy to handle packets that pass before traffic identification
This task explains how to specify the system's behavior for network traffic during the period before traffic identification is complete.
Note | This setting is sometimes referred to as the default intrusion policy. (This is distinct from the default action for an access control policy.) |
Before you begin
Review best practices for these settings. See Best practices for handling packets that pass before traffic identification.
Follow these steps to specify a policy to handle packets that pass before traffic identification:
Procedure
Step 1 | In the access control policy editor, click Advanced, then click Edit ( If View ( |
Step 2 | Select an intrusion policy from the Intrusion Policy used before Access Control rule is determined drop-down list. If you choose a user-created policy, you can click Edit ( |
Step 3 | Optionally, select a different variable set from the Intrusion Policy Variable Set drop-down list. You can also select Edit ( |
Step 4 | Click OK. |
Step 5 | Click Save to save the policy. |
What to do next
-
Deploy configuration changes.
