Is there a way to locally verify if a specific IPS signature is applied on a system (registry, file, etc.)?
Go in to HIPS IPS Rules and check the boxes to enable it for Security Level High and enable logging. Then push the policy to the client. Is there a place on the client where I can see a setting change for that one specific signature?