12.03.2015 Views

FortiGate Administration Guide - FirewallShop.com

FortiGate Administration Guide - FirewallShop.com

FortiGate Administration Guide - FirewallShop.com

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Switch (<strong>FortiGate</strong>-224B only)<br />

Configuring port quarantine<br />

Configuring an access policy<br />

Go to Switch > Port Quarantine > Strict Policy and select Create New to<br />

configure an access policy for selected switch ports.<br />

Figure 135:Configuring a strict access policy<br />

Name<br />

Client Profile<br />

Action<br />

Protection profile<br />

Secure port<br />

Available Ports<br />

Member Ports<br />

Enter a name for this policy.<br />

Select the client profile to apply with this policy.<br />

Select the action to take if a client fails the host check. One of:<br />

• Allow - allow access anyway<br />

• Deny - do not allow further access<br />

• Quarantine - quarantine the port<br />

• Dynamic-Profile - apply dynamic profile<br />

If Action is Dynamic-Profile, select the protection profile to apply.<br />

Dynamic profile applies the selected protection profile and<br />

monitors the port. The port is quarantined if a virus or other form of<br />

attack is detected.<br />

Enable Secure Port on the interface automatically when the<br />

dynamic profile is in effect. You must create firewall policies to<br />

allow traffic to pass between this switch port and other interfaces.<br />

A list of the switch ports that do not already have an access policy.<br />

To add ports to the Member Ports list for this policy, select the<br />

ports and then select the right-pointing arrow button.<br />

A list of the switch ports that belong to this policy. To remove ports<br />

from the list, select the ports and then select the left-pointing arrow<br />

button.<br />

<strong>FortiGate</strong> Version 3.0 MR5 <strong>Administration</strong> <strong>Guide</strong><br />

01-30005-0203-20070830 223

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!