12.03.2015 Views

FortiGate Administration Guide - FirewallShop.com

FortiGate Administration Guide - FirewallShop.com

FortiGate Administration Guide - FirewallShop.com

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Switch (<strong>FortiGate</strong>-224B only)<br />

Configuring dynamic policies<br />

Figure 137:Creating a dynamic policy<br />

Name<br />

IPS Min. Alert<br />

Antivirus<br />

Available Ports<br />

Member Ports<br />

Portal...<br />

Enable FortiClient<br />

Image Download<br />

Allow to access<br />

third-party URLs<br />

Allowed URLs<br />

Name<br />

URL<br />

Delete icon<br />

Add button<br />

Host check and<br />

Auto-Recover<br />

Client Profile<br />

Enter a name for this dynamic policy.<br />

Select the minimum IPS alert level that will trigger quarantine, or<br />

None if IPS protection is not required.<br />

Select to trigger quarantine if there is an antivirus alert.<br />

A list of the switch ports that do not already have a dynamic policy.<br />

To add a port to the Member Ports list, select it and then select the<br />

right-pointing arrow button.<br />

A list of the switch ports that belong to this policy.<br />

To remove a port from the list, select it and then select the leftpointing<br />

arrow button.<br />

Select to view the Quarantine Portal settings listed below.<br />

Select to show a “Download FortiClient” link on the web portal<br />

page. You must go to System > Maintenance ><br />

Backup & Restore to upload a FortiClient image file.<br />

Specify a list of URLs to which the Quarantined port is permitted<br />

to connect.<br />

Add links for external URLs to the web portal page.<br />

Enter the text for the link.<br />

Enter the URL for the link.<br />

Select to remove link.<br />

Select to add link to list.<br />

Select to show a “Check my <strong>com</strong>puter” link on the web portal<br />

page. The user selects this link to re-run the host check specified<br />

in the Client Profile.<br />

Select the access client profile to apply with this policy.<br />

See “Configuring a client profile” on page 221.<br />

<strong>FortiGate</strong> Version 3.0 MR5 <strong>Administration</strong> <strong>Guide</strong><br />

01-30005-0203-20070830 225

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!