---
title: "View IPS signature feeds"
canonical: "https://docs.aryaka.com/space/KNOW/65929432/View%20IPS%20signature%20feeds"
format: markdown
---
The IPS Feeds page allows you to view the signature feeds that are used to enforce intrusion prevention system (IPS) security rules. A signature is a specific pattern that defines malicious activity or was attributed to a previous security attack. Aryaka SmartSecure IPS uses three collections of signatures that are updated daily by  Proofpoint  to monitor network traffic and identify any patterns that indicate a potential security threat. The three signature collections correspond to the following profiles: Basic—Provides a high level of security while ensuring optimized system performance. Includes approximately 17,000 signatures.   Moderate—Provides a balance between the basic and advanced profiles. Includes approximately 19,000 signatures.   Advanced—Provides the highest level of security protection against known and emerging threats. System performance can be impacted due to increased examination of traffic. Includes approximately 22,000 signatures.   Aryaka modifies these signature collections so that they can be used by the three IPS security engines (LAN-Side Basic IPS, WAN-Side Basic IPS, and Advanced IPS). The resulting nine signature collections are referred to as signature  feeds  and they are displayed in a table on the Signature Feeds page. The Signature Feeds page is a read-only page—you cannot add or delete signature feeds. However, if you want to change the variables included in each signature, you can follow the procedure in the  Configure IPS global settings  topic. If you want to change the status or verdict for a signature within a feed, you can follow the procedure in the  Configure IPS Modification policies  topic.  By default, each IPS security engine uses the basic signature feed. To change the signature feed for an IPS security engine, you must  create a Signature template . If it is not already open, complete the following procedure to view the IPS Feeds page: To view IPS signature feeds Log in to MyAryaka. The Home page appears. Click  Security  >  IPS  in left navigation pane. The IPS page appears.  Click  Manage  in the IPS Feeds tile. The IPS Feeds page appears and displays a table with the following details for each of the nine signature feeds: Name—The name of the signature feed that indicates the profile of the included signatures (basic, moderate or advanced) and the IPS security engine that can use the signature feed. Description—A brief description of the signature feed.  Policy Engine—The name of the IPS security engine that can use the signature feed. Signature Templates—The number of signature templates that use the signature feed.  Click the name of the signature feed you want to view. The Signature Feed: < signature feed name > page appears in read-only mode and displays a list of all the signatures included in the feed with the following details for each: SID:REV—The unique identifier of the signature (SID) and the revision (REV) number of the signature. Signatures are regularly updated as new threats emerge. Verdict—The verdict that is associated with the signature and applied to matched traffic. Each verdict includes a recommended action to either permit or drop the traffic and whether to generate an event log. Enabled—Whether the signature is currently enabled or disabled, which determines whether the verdict is applied to matched traffic.  Classtype—The type of activity that the signature is indicative of, for example, an unsuccessful login attempt or a web application attack. Msg—The message included in the event log. Note:  This page displays 10 signatures at a time. Use the search field above the table to view a specific signature or use the page tabs below the table to view additional entries. Click the  Expand  icon next to the signature for which you want to view details. The following details are displayed: Source IPs—The source address of the signature. Source Ports—The source ports of the signature. Destination IPs—The destination address of the signature. Destination Ports—The destination port of the signature.  Click  Signature Details . The Signature Details pane appears and displays the full details of the selected signature.  Related topics Configure IPS Signature templates Configure IPS Modification policies Configure global IPS settings IPS