hello everyone,
I have a problem with the profiles in Threat Prevention under Custom Policy. I created a profile some time ago: ‘JMC only IPS’. I have now removed the profile from all (known) locations. when I display a ‘Where Used’, I can see that this profile still exists in 2 objects:
SDT_asm_dynamic_prop_SSL_BF_DOS_JMC only IPS_attribs
SDT_asm_dynamic_prop_UDP_BF_DOS_JMC only IPS_attribs
It is not listed anywhere else, not under Policies or Legancy objects. Only under Objects.
I have no idea where to find them or what they do. I just want to delete the profile, but I can't do that.
strangely enough, i sometimes find entries in the logs that refer to this profile. for example in a log under ‘Protection Name: Non Compliant DNS’. when i look at the rules in the inspection settings, however, i cannot determine which profile is the basis anywhere. i have also already checked all other settings such as the layers, etc.
I have another profile with the same values, but it is being used.
Can anyone help me here?
thx
jeff