Hi all, im pretty new to the sophos firewall i noted that on the dashboard it showed an attack and also checked the logs whcih are both shown below. From this i can see that it was detected rather than blocked. Is there a way to set the IPS to block by default and if so how do i go about doing this? do is there a way of duplicating the IPS policy and changing the action to drop/block?. I am currently using the LAN to WAN IPS policy.
Edited TAGs
[edited by: Erick Jan at 4:42 AM (GMT -7) on 17 Oct 2024]