<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic IPS Global Exceptions and Custom Policy in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/IPS-Global-Exceptions-and-Custom-Policy/m-p/276693#M105286</link>
    <description>&lt;P&gt;Good Morning&lt;/P&gt;&lt;P&gt;We have a quick question around IPS Global Exceptions and the Custom Policy if possible?&lt;/P&gt;&lt;P&gt;At present, we have 2 IPS Global Exceptions in place.&lt;/P&gt;&lt;P&gt;We plan to move the 1st rule from Global Exceptions to Custom Policy.&amp;nbsp; As this bypasses IPS, we will just create a new IPS Profile and unselect IPS Blade.&amp;nbsp; We will then match the rule from Global Exceptions into the Custom Policy and then delete it from Global Exceptions.&lt;/P&gt;&lt;P&gt;This should then be a like for like exception.&lt;/P&gt;&lt;P&gt;The 2nd rule, as we have limited this to be 1 particular protection, we cannot be this granular under a Custom Policy.&lt;/P&gt;&lt;P&gt;We could move it into a Custom Policy but then have to bypass all IPS.&amp;nbsp; This is not a preferred setup.&lt;/P&gt;&lt;P&gt;Or we just leave the 2nd rule still in the Global Exceptions.&lt;/P&gt;&lt;P&gt;The question we have is, are we still able to have some rules in Custom Policy and more granular rules within the Global Exceptions?&lt;/P&gt;&lt;P&gt;We think this is possible and an approved setup but I was just looking for any further advice or opinions?&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Fri, 08 May 2026 09:45:59 GMT</pubDate>
    <dc:creator>NeilDavey</dc:creator>
    <dc:date>2026-05-08T09:45:59Z</dc:date>
    <item>
      <title>IPS Global Exceptions and Custom Policy</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/IPS-Global-Exceptions-and-Custom-Policy/m-p/276693#M105286</link>
      <description>&lt;P&gt;Good Morning&lt;/P&gt;&lt;P&gt;We have a quick question around IPS Global Exceptions and the Custom Policy if possible?&lt;/P&gt;&lt;P&gt;At present, we have 2 IPS Global Exceptions in place.&lt;/P&gt;&lt;P&gt;We plan to move the 1st rule from Global Exceptions to Custom Policy.&amp;nbsp; As this bypasses IPS, we will just create a new IPS Profile and unselect IPS Blade.&amp;nbsp; We will then match the rule from Global Exceptions into the Custom Policy and then delete it from Global Exceptions.&lt;/P&gt;&lt;P&gt;This should then be a like for like exception.&lt;/P&gt;&lt;P&gt;The 2nd rule, as we have limited this to be 1 particular protection, we cannot be this granular under a Custom Policy.&lt;/P&gt;&lt;P&gt;We could move it into a Custom Policy but then have to bypass all IPS.&amp;nbsp; This is not a preferred setup.&lt;/P&gt;&lt;P&gt;Or we just leave the 2nd rule still in the Global Exceptions.&lt;/P&gt;&lt;P&gt;The question we have is, are we still able to have some rules in Custom Policy and more granular rules within the Global Exceptions?&lt;/P&gt;&lt;P&gt;We think this is possible and an approved setup but I was just looking for any further advice or opinions?&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 08 May 2026 09:45:59 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/IPS-Global-Exceptions-and-Custom-Policy/m-p/276693#M105286</guid>
      <dc:creator>NeilDavey</dc:creator>
      <dc:date>2026-05-08T09:45:59Z</dc:date>
    </item>
    <item>
      <title>Re: IPS Global Exceptions and Custom Policy</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/IPS-Global-Exceptions-and-Custom-Policy/m-p/276721#M105296</link>
      <description>&lt;P&gt;You can mix/match custom policy and global exceptions as needed, to the best of my knowledge.&lt;/P&gt;</description>
      <pubDate>Fri, 08 May 2026 20:32:49 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/IPS-Global-Exceptions-and-Custom-Policy/m-p/276721#M105296</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2026-05-08T20:32:49Z</dc:date>
    </item>
  </channel>
</rss>

