Space banner This version of the product is in limited support. However, the documentation is available for your convenience. You will not be able to leave comments.

Managing rule sets


Rule sets logically group one or more rules. Rule sets can be used in span actions (for example, Deploy to Active) to make configuration changes and enabled for real-time auditing. 

When TrueSight Network Automation is installed for the first time, a sample set of industry-standard security-related rule sets and associated rules are imported to your database.

The sample rules help you get started to define and organize your own rules for your organization. If you are upgrading TrueSight Network Automation, the sample rules are not imported but are available in the server installation directory (BCAN_HOME\public\bmc\bca-networks\rules). At any time, you can import the sample rules using the Rule Import task.

The following table contains conceptual information and tasks that describe how to manage rule sets and provides links to applicable topics:

Administering task

For more information

Benefits

To add a rule set

Learn how to add a rule set.

To associate user access rights with a rule set

Learn how you can restrict which users can access the rule set and associated rules. You can also restrict view, edit, delete, enable, and disable rights.

To manage access rights for a rule set

Understand how you can manage access rights for rule sets. Also, understand how to edit access rights for multiple roles in multiple rule sets.

To perform various actions on rule sets

Use the rule sets list to perform the following rule sets actions:

  • Display rule sets matching a view
  • Filter rule sets
  • Add a rule set
  • Manage access rights for a rule set
  • View details of a rule set
  • Edit a rule set
  • Copy a rule set
  • Delete a rule set
  • Enable a rule set
  • Disable a rule set

Related topics

About defining and organizing rules
Adding-a-rule-import-task

 

 

Tip: For faster searching, add an asterisk to the end of your partial query. Example: cert*