02-22-2016 01:50 AM - edited 03-12-2019 05:54 AM
Feedback for new version:
When editing IPS rules via Firepower management center and you want to suppress an IPS rule for a IP or Subnet we think it's better also have the opportunity to chose an existing Object-Group of IP addresses.
For example:
Proxy provider which has 5 subnets containing proxy servers, then adds one new subnet, then we simply add that subnet to the Object-Group and the IPS rule is than also suppressed for that IP subnet. Otherwise you have to check all the rules again.
Also perhaps a feedback button like in Cisco Prime would be nice :) to give feedback directly from management center. We are now using 6.0.0.1
02-22-2016 12:30 PM
Great idea.
11-28-2016 02:16 PM
I'm seconding this. I have specific networks I don't care about logging but still need to be inspected.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide