HP ProCurve Threat Management Solution Implementation Guide 2009-05

4-79
HP ProCurve Network Immunity Manager with HP ProCurve Security Devices
Step 3: Respond to Threats
Subtask: Ensure Policy Execution Is Disabled
Alternatively, if you decide to set up actions and policies the first time you go through the
process, ProCurve strongly recommends that you disable policy execution. (This is the default
setting, but you should ensure that no one has changed it.) You will be able to verify that NIM
and the TMS zl Module detect threats, but also defer actual execution of the responses until
you have a better understanding of the potential threat activity on your network.
You can quickly determine whether or not this setting is enabled or disabled by looking at the
bottom right corner of any PCM+ window. In Figure 4-56, for example, you can see the words
“Policy configuration actions disabled.” The setting is disabled.
Figure 4-56. PCM+ Dashboard
If the default setting has been changed, you can disable policy execution by completing the
following steps:
1. In the PCM+ management interface, open the Preferences window by clicking Tools >
Preferences.
2. In the navigation tree, click Policy Management.
3. In the Configuration Changes section of the Global: Policy Management window, make sure
the Enable Policy Actions option is cleared.