Within the advanced tab of the access control policy there is option to set network analysys policy and a default IPS policy.
Why would I not just create a blanket IPS policy that has everything in it I want blocked like Maleware/Explots etc rather than have it set to "No Rules Active" and applying IPS policy on my individual rules???