I am attempting to migrate our VSE/HIPS policies to ENS using the Endpoint Migration Assistant. We have several custom HIPS rules. The ones that were created using "Standard Subrules" have migrated to the ENS Access Protection policy with no issue. But anything that was using an "Expert Subrule" does not appear to get migrated anywhere. Is this normal?
If there's is no way to migrate these automatically, is there a tool or anything that can assist with converting the syntax of these rules into a AAC-based Expert rule to be used in the Exploit Prevention policy?
Solved! Go to Solution.
Hi @curo
The IPS Expert Rules created as a sub-rule migrate to the ENSTP EP policy as described in the the guide:
As you can see, there are some that will not migrate and need to be re-created.
Hi @curo
The IPS Expert Rules created as a sub-rule migrate to the ENSTP EP policy as described in the the guide:
As you can see, there are some that will not migrate and need to be re-created.
Thanks for the link. Our rules are mainly file-based so yeah it looks like I will need to recreate them.
Ah, sorry to hear! Hopefully you can use it as an opportunity to review the rules and see if you still need all of them? (trying to put a positive spin on it 🙂 )
New to the forums or need help finding your way around the forums? There's a whole hub of community resources to help you.
Thousands of customers use our Community for peer-to-peer and expert product support. Enjoy these benefits with a free membership: