Showing results for 
Search instead for 
Did you mean: 

Adaptive/Learn Mode in FW under Deny All Rule


I am running HIPS 8, and via the ePO, when I set the ePO FW to Adaptive Mode, Adaptive Mode is not being enabled due to the fact that the rule is being placed under the Deny All rule at the bottom.  (Please see screenshot).  How can I move this rule above the Deny All rule?  I don't see it in the actual firewall policy to move the rule up.

Please help!



1 Reply
McAfee Employee ktankink
McAfee Employee
Report Inappropriate Content
Message 2 of 2

Re: Adaptive/Learn Mode in FW under Deny All Rule

The DENY ALL rule is in your Firewall Rule policy; you'll need to remove/disable this rule.  You do not need a DENY ALL rule in the firewall rule policy, as the HIPS client will already include a rule that does this (see the BLOCK ALL TRAFFIC rule in your screenshot).  If you use a DENY ALL rule in your firewall rule policy, you cannot use Adaptive mode functionality because your DENY ALL rule will be processed before the Adaptive mode rule (rules are processed from TOP down).

More McAfee Tools to Help You
  • Subscription Service Notification (SNS)
  • How-to: Endpoint Removal Tool
  • Support: Endpoint Security
  • eSupport: Policy Orchestrator
  • Community Help Hub

      New to the forums or need help finding your way around the forums? There's a whole hub of community resources to help you.

    • Find Forum FAQs
    • Learn How to Earn Badges
    • Ask for Help
    Go to Community Help

    Join the Community

      Thousands of customers use the McAfee Community for peer-to-peer and expert product support. Enjoy these benefits with a free membership:

    • Get helpful solutions from McAfee experts.
    • Stay connected to product conversations that matter to you.
    • Participate in product groups led by McAfee employees.
    Join the Community
    Join the Community