Threat Management tools
- Add
unifi_get_threat_posturefor period-specific CyberSecure summaries and gateway signature status. Unknown values stay null; timestamps use Unix milliseconds. - Add
unifi_update_threat_management_settingswith live before/after previews, confirmation, policy enforcement and persistence verification. - IPS and Traffic Identification updates use separate calls. Category lists replace the current selection and select manual filtering. Disabling IPS also clears category selection; re-enabling requires protected networks and explicit nonempty manual categories.
- Preserve protected-network membership. Changes can interrupt inspection or identification; inspect uncertain or collateral-change results before another update.
- Add explicit threat event roles while preserving associated-device identity semantics.
Requires Core 0.4.61. Verified on Network 10.6.106 with approved fingerprinting and ActiveX-category apply/readback/restore. All original settings were restored. This verifies stored configuration, not malicious-traffic detection.
Related: #385.