12.03.2015 Views

FortiGate Administration Guide - FirewallShop.com

FortiGate Administration Guide - FirewallShop.com

FortiGate Administration Guide - FirewallShop.com

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

Replacement messages<br />

System Config<br />

Table 28: Replacement message tags (Continued)<br />

Tag<br />

%%QUARFILENAME%%<br />

%%QUESTION%%<br />

%%SERVICE%%<br />

%%SOURCE_IP%%<br />

%%TIMEOUT%%<br />

%%URL%%<br />

%%VIRUS%%<br />

Description<br />

The name of a file that has been removed from a content<br />

stream and added to the quarantine. This could be a file that<br />

contained a virus or was blocked by antivirus file blocking.<br />

%%QUARFILENAME%% can be used in virus and file block<br />

messages. Quarantining is only available on <strong>FortiGate</strong> units<br />

with a local disk.<br />

Authentication challenge question on auth-challenge page.<br />

Prompt to enter username and password on auth-login page.<br />

The name of the web filtering service.<br />

The IP address of the request originator who would have<br />

received the blocked file. For email this is the IP address of the<br />

user’s <strong>com</strong>puter that attempted to download the message from<br />

which the file was removed.<br />

Configured number of seconds between authentication<br />

keepalive connections. Used on the auth-keepalive page.<br />

The URL of a web page. This can be a web page that is<br />

blocked by web filter content or URL blocking. %%URL%% can<br />

also be used in http virus and file block messages to be the<br />

URL of the web page from which a user attempted to download<br />

a file that is blocked.<br />

The name of a virus that was found in a file by the antivirus<br />

system. %%VIRUS%% can be used in virus messages<br />

Changing the authentication login page<br />

Users see the authentication login page when they use a VPN or a firewall policy<br />

that requires authentication. You can customize this page in the same way as you<br />

modify other replacement messages, but there are some unique requirements:<br />

• The login page must be an HTML page containing a form with ACTION="/" and<br />

METHOD="POST"<br />

• The form must contain the following hidden controls:<br />

• <br />

• <br />

• <br />

• The form must contain the following visible controls:<br />

• <br />

• <br />

Example<br />

The following is an example of a simple authentication page that meets the<br />

requirements listed above.<br />

Firewall Authentication<br />

You must authenticate to use this service.<br />

<br />

<br />

<strong>FortiGate</strong> Version 3.0 MR5 <strong>Administration</strong> <strong>Guide</strong><br />

156 01-30005-0203-20070830

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!