Hi,
I would like to configure my IPS on the Sophos UTM 9.2 like this.
I would like to monitor the traffic with the IPS but no blocking.
But for some signatures for example hear bleed CVE-2014-0160, I would like to block traffic which matches with the signature of CVE-2014-0160.
Is it possible to configure the UTM like this? I couldn't manage this so far.
Or is there a good resource to learn more about this?
This thread was automatically locked due to age.