18.07.2013 Views

Sidewinder G2 6.1.1 Administration Guide - Glossary of Technical ...

Sidewinder G2 6.1.1 Administration Guide - Glossary of Technical ...

Sidewinder G2 6.1.1 Administration Guide - Glossary of Technical ...

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

Creating Web or Secure Web Application Defenses<br />

6-14 Configuring Application Defenses<br />

If you select Scan for Known Viruses only, traffic that matches a rule<br />

requiring virus scanning will be scanned for viruses with known<br />

signatures.<br />

If you select Scan for Unknown Viruses only, traffic that matches a<br />

rule requiring virus scanning will be scanned only for unknown<br />

signatures using heuristic methods.<br />

If you select both Scan for Known Viruses and Scan for Unknown<br />

Viruses, traffic that matches a rule requiring virus scanning will be<br />

scanned for both known and unknown virus signatures.<br />

Note: If you do not select at least one scanning option and you have filter rules<br />

configured that require virus scanning, traffic that matches those rules will NOT be<br />

scanned for known virus signatures.<br />

2. Configure the appropriate MIME/Anti-Virus filter rules in the MIME/Anti-<br />

Virus Filter Rules table, as follows:<br />

Create a new filter rule—To create a new filter rule, click New and<br />

see “Configuring MIME filtering rules” on page 6-15.<br />

Modify an existing filter rule—To modify an existing filter rule,<br />

select the rule you want to modify, and click Modify. See<br />

“Configuring MIME filtering rules” on page 6-15. (If you are<br />

modifying the default MIME filtering rule, see “Configuring the<br />

Default filtering rule action” on page 6-17.)<br />

Delete a filter rule—To delete an existing filter rule, select the rule<br />

you want to delete and click Delete. You will be prompted to<br />

confirm your decision.<br />

3. To configure file handling for infected files in the Infected File Handling<br />

area, do the following:<br />

a. Determine how infected files will be handled.<br />

To discard infected files, select Discard.<br />

To remove the virus from the file and then continue processing the<br />

file, select Repair.<br />

b. To quarantine infected files for later viewing, select Quarantine Files.<br />

If you select this option, the files will be quarantined in:<br />

/var/log/vscan/quarantine/

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!