12.03.2015 Views

FortiGate Administration Guide - FirewallShop.com

FortiGate Administration Guide - FirewallShop.com

FortiGate Administration Guide - FirewallShop.com

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Default protection profiles<br />

Firewall Protection Profile<br />

Default protection profiles<br />

The <strong>FortiGate</strong> unit is preconfigured with four default protection profiles. In many<br />

cases you can use these default protection profiles as is instead of adding new<br />

protection profiles.<br />

Strict<br />

Scan<br />

Web<br />

Unfiltered<br />

Apply maximum protection to HTTP, FTP, IMAP, POP3, and SMTP<br />

traffic. The strict protection profile may not be useful under normal<br />

circumstances but it is available when maximum protection is required.<br />

Apply virus scanning to HTTP, FTP, IMAP, POP3, and SMTP traffic.<br />

Quarantine is also selected for all content services. On <strong>FortiGate</strong><br />

models with a hard drive, if antivirus scanning finds a virus in a file, the<br />

file is quarantined on the <strong>FortiGate</strong> hard disk. If required, system<br />

administrators can recover quarantined files.<br />

Apply virus scanning and web content blocking to HTTP traffic. Add this<br />

protection profile to firewall policies that control HTTP traffic.<br />

Apply no scanning, blocking or IPS. Use the unfiltered content profile if<br />

no content protection for content traffic is required. Add this protection<br />

profile to firewall policies for connections between highly trusted or<br />

highly secure networks where content does not need to be protected.<br />

Viewing the protection profile list<br />

To view the protection profile list, go to Firewall > Protection Profile.<br />

Figure 211:Default protection profiles<br />

The Protection Profile list has the following icons and features:<br />

Create New<br />

Name<br />

Delete<br />

Edit<br />

Select to add a protection profile.<br />

The name of the protection profile<br />

Select to remove a protection profile from the list. The Delete icon is<br />

only available if the profile is not being used in a firewall policy.<br />

Select to modify a protection profile.<br />

Note: A protection profile cannot be deleted (the Delete icon is not visible) if it is selected in<br />

a firewall policy or included in a user group.<br />

<strong>FortiGate</strong> Version 3.0 MR5 <strong>Administration</strong> <strong>Guide</strong><br />

330 01-30005-0203-20070830

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!