McAfee HISCDE-AB-IA Product Guide - Page 23

System management, Host IPS permission sets

Page 23 highlights

Managing Your Protection System management Migrating policies directly After installing the Host Intrusion Prevention 8.0 extension, the easiest way to migrate all existing policies is to migrate policies directly. 1 Click Automation | Host IPS Policy Migration. 2 Under Action for Host IPS 6.1 or 7.0 policies in the ePO policy catalog, click Migrate. 3 When policy migration is complete, click Close. All version 6.1/7.0 IPS, Firewall, and General feature policies are converted to version 8.0 and appear with [6.1] or [7.0] after their name. NOTE: Running the policy migration a second time overwrites any policies of the same name that were migrated previously. This process is not selective, as all existing 6.1 or 7.0 policies are migrated. If you want to selectively migrate policies, you migrate using the xml file process. Migrating policies through an xml file If the Host Intrusion Prevention 6.1/7.0 extension is not installed and you have previously exported selected single policies to an xml file, or if you want to selectively migrate version 6.1/7.0 policies instead of all policies at once, you do this by migrating through an xml file. The process involves first exporting single Host Intrusion Prevention 6.1/7.0 policies to xml format, converting the contents of the xml file to Host Intrusion Prevention 8.0 policy versions, and later importing the migrated xml file into the ePO Policy Catalog. 1 Click Automation | Host IPS Policy Migration. 2 Under Action for Host IPS 6.1 or 7.0 policies in an xml file, click Migrate. 3 Select the Host IPS 6.1 or 7.0 version xml file previously exported, then click OK. The xml file is converted to policy version 8.0 format. 4 Right-click the link to the converted MigratedPolicies.xml file and save it for importing. 5 Import the xml file in to the ePO Policy Catalog. System management As part of managing the Host Intrusion Prevention deployment, you need to perform occasional system tasks. These include setting up user permissions, server tasks, notifications, and content updating. Host IPS permission sets A permission set is a group of permissions granted to a user account for specific products or features of a product. One or more permission sets can be assigned. All permissions to all products and features are automatically assigned to global administrators. Permission sets only grant permissions - they never remove a permission. Global administrators can assign existing permission sets when creating or editing user accounts and when creating or editing permission sets. The Host Intrusion Prevention extension adds a Host Intrusion Prevention section to the permission sets without applying any permissions. The global administrators must grant Host IPS permissions to existing permission sets or create new permission sets and add them there. With Host Intrusion Prevention, permissions are granted for access to each feature of the product and whether the user has read or read/write permission. This applies to the Host McAfee Host Intrusion Prevention 8.0 Product Guide for ePolicy Orchestrator 4.5 23

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154

Migrating policies directly
After installing the Host Intrusion Prevention 8.0 extension, the easiest way to migrate
all
existing policies is to migrate policies directly.
1
Click
Automation | Host IPS Policy Migration
.
2
Under Action for Host IPS 6.1 or 7.0 policies in the ePO policy catalog, click
Migrate
.
3
When policy migration is complete, click
Close
.
All version 6.1/7.0 IPS, Firewall, and General feature policies are converted to version 8.0 and
appear with [6.1] or [7.0] after their name.
NOTE:
Running the policy migration a second time overwrites any policies of the same name
that were migrated previously. This process is not selective, as all existing 6.1 or 7.0 policies
are migrated. If you want to selectively migrate policies, you migrate using the xml file process.
Migrating policies through an xml file
If the Host Intrusion Prevention 6.1/7.0 extension is not installed and you have previously
exported selected single policies to an xml file, or if you want to selectively migrate version
6.1/7.0 policies instead of all policies at once, you do this by migrating through an xml file. The
process involves first exporting single Host Intrusion Prevention 6.1/7.0 policies to xml format,
converting the contents of the xml file to Host Intrusion Prevention 8.0 policy versions, and
later importing the migrated xml file into the ePO Policy Catalog.
1
Click
Automation | Host IPS Policy Migration
.
2
Under Action for Host IPS 6.1 or 7.0 policies in an xml file, click
Migrate
.
3
Select the Host IPS 6.1 or 7.0 version xml file previously exported, then click
OK
. The xml
file is converted to policy version 8.0 format.
4
Right-click the link to the converted MigratedPolicies.xml file and save it for importing.
5
Import the xml file in to the ePO Policy Catalog.
System management
As part of managing the Host Intrusion Prevention deployment, you need to perform occasional
system tasks. These include setting up user permissions, server tasks, notifications, and content
updating.
Host IPS permission sets
A permission set is a group of permissions granted to a user account for specific products or
features of a product. One or more permission sets can be assigned. All permissions to all
products and features are automatically assigned to global administrators. Permission sets only
grant permissions — they never remove a permission.
Global administrators can assign existing permission sets when creating or editing user accounts
and when creating or editing permission sets.
The Host Intrusion Prevention extension adds a Host Intrusion Prevention section to the
permission sets without applying any permissions. The global administrators must grant Host
IPS permissions to existing permission sets or create new permission sets and add them there.
With Host Intrusion Prevention, permissions are granted for access to each feature of the
product and whether the user has read or read/write permission. This applies to the Host
Managing Your Protection
System management
23
McAfee Host Intrusion Prevention 8.0 Product Guide for ePolicy Orchestrator 4.5