Hi all, im pretty new to the sophos firewall i noted that on the dashboard it showed an attack and also checked the logs whcih are both shown below. From this i can see that it was detected rather than blocked. Is there a way to set the IPS to block by default and if so how do i go about doing this? do is there a way of duplicating the IPS policy and changing the action to drop/block?. I am currently using the LAN to WAN IPS policy.
Added TAGs
[edited by: Raphael Alganes at 3:37 PM (GMT -7) on 15 Oct 2024]