Kaspersky Anti Targeted Attack (KATA) Platform

Enabling and disabling the use of an IDS rule when scanning events

8 November 2023

ID 247713

To enable or disable an IDS rule when scanning events:

  1. In the window of the application web interface, select the Custom rules section, IDS subsection.
  2. This opens the user-defined IDS rule window.
  3. Move the State switch to one of the following positions:
    • Enabled
    • Disabled

The use of the IDS rule when scanning events is enabled or disabled.

Users with the Security auditor role cannot enable or disable IDS rules.

Users with the Security officer role cannot gain access to user-defined IDS rules.

See also

Managing user-defined IDS rules

Importing a user-defined IDS rule

Viewing the information of a user-defined IDS rule

Configuring the importance of alerts generated by the user-defined IDS rule

Replacing a user-defined IDS rule

Exporting a user-defined IDS rule file to the computer

Deleting a user-defined IDS rule

Did you find this article helpful?
What can we do better?
Thank you for your feedback! You're helping us improve.
Thank you for your feedback! You're helping us improve.