First off, I'm assuming that you are using R80.10 or later on your gateway. In R80.10+ there are essentially four separate types of signatures/protections that were formerly all part of IPS in R77.30 and earlier:
- IPS ThreatCloud Protections (part of Threat Prevention)
- Core Protections (part of Access Control...sort of)
- Inspection Settings (part of Access Control)
- Geo Policy (part of Access Control)
If you still have R77.30 or earlier gateways management of IPS is much more complicated. I'm happy to answer specific questions about IPS that were covered in my IPS Immersion course, but I'd suggest reading the relevant Check Point IPS documentation first as this is a rather large topic.
Gateway Performance Optimization R81.20 Course
now available at maxpowerfirewalls.com