Configure Custom Signatures
For supported software information, click here.
To configure custom signatures, you upload intrusion prevention system (IPS) signature files in .zip or .rules format,and then publish them to push the files to all SASE gateways on which the tenant is present. The Concerto node then automatically activates the custom signature files.
For information about creating IPS signature files, see Configure Intrusion Detection and Prevention.
To configure custom signatures:
- Go to Configure > Security Service Edge > Real-Time Protection > Profiles.

The following screen displays.

- Select the Malware Protection & IPS > Custom Signatures tab, and then click
Upload File. The Upload File popup window displays.
Note: In Release 12.2.2, the Custom Signatures subtab was moved under the new Malware Protection & IPS tab.

- Enter a filename in the File Name field, or click Browse to select a file to upload. The file must in .zip or .rules format.
- Click Upload to upload the file. You can upload multiple files.
- In the main Custom Signatures screen, click Publish to push all the uploaded custom signature files to all the SASE gateways on which the tenant is present.
Supported Software Information
Releases 12.1.1 and later support all content described in this article, except:
- In Release 12.2.2, the Custom Signatures subtab was moved under the new Malware Protection & IPS tab.
