Is there a way to select multiple rules and change them all, as a group, from Alert to Drop without having to change them one at a time? Such as, there are 302 netbios rules I want to change to drop. That will take an hour or more to do manually. Likewise with our groupings; malware, OSX, etc.
Me too! :)
Yes, that would be great to add!
A better rules management system would be nice. I am sure it will come eventually. But from my perspective, it will probably require a total IDS GUI rewrite. Would be nice to know if something is in the works.