Policy rules within an Advanced IP Defense profile define how the managed firewalls enforce security policies based on IP attributes and direct-to-IP detection. Each rule specifies match conditions using the Matches or Does not Match operator, an action, and a log severity level.