HP ProCurve Threat Management Solution Implementation Guide 2009-05

3-50
HP ProCurve Network Immunity Manager with a Third-Party IDS/IPS
Step 2: Detect Threats
Figure 3-49. The Interface Pairs List
a. Click Apply.
5. Set up a virtual sensor.
a. At the bottom of the left navigation bar, click the Policies tab.
b. Click IPS Policies.
c. Click Add Virtual Sensor.
d. Enter a name for the virtual sensor. Optionally, you can add a description.
e. Select the check boxes next to two interfaces that you want to add to the virtual sensor
as an inline pair, and then click Assign.
f. Select a signature definition from the Signature Definition Policy menu.
g. Select an event action rules policy. If you want to use any event action overrides you
have configured, select the Use Event Action Overrides check box. You can also add new
event action overrides by clicking Add and doing the following:
i. Select the risk rating from the Risk Rating menu.
ii. Under the Assigned column, select the check boxes next to the actions you want
to assign to this event action override.
iii. Under the Enabled column, select the check boxes next to the actions you want
enabled.
iv. Click OK.
h. Select an anomaly detection policy.