Skip to main content
Waynem1966
New Member
June 27, 2017
Question

IPS Setup

  • June 27, 2017
  • 0 replies
  • 2227 views

We manage a handful of newer Fortigate devices (v5.2-5.6) which have licenses for the Intrusion Prevention security feature, but it has never been configured. We reviewed the instructions at http://help.fortinet.com/fos50hlp/56/Content/FortiOS/fortigate-security-profiles/IPS/Enable%20IPS%20scanning.htm , but it doesn't appear to answer all of our questions.

1) Is there a "best practice" rule for adding signatures and filters?

2) Are there some that should always be enabled?

3) Is it possible (or desirable) to do a "select all" when adding these?

 

Thanks in advance for your time

    Thought Leadership Security Summit. Outpace New Threats with AI - enhanced defense. Tuesday, Septmeber 15, 8:30 AM - 2:30 PM PT. The Golf Club at Newcastle, WA.
    Fortinet Flag the Hack. Wednesday, August 26, 9:00 AM - 5:00 PM ET, COSM, Atlanta, GA.
    Virtual event | September 2026. SASE summit. The age of autonomous trust. Register here!