Is there a way to disable an IPS rule per host rather than globally?
Say I have an internal host which generates false positives, but I don't want to stop looking for outside hosts which might use the same exploit. Can I do this?
Also can this be done for portscans?
Thanks,
Will
This thread was automatically locked due to age.