12.03.2015 Views

FortiGate Administration Guide - FirewallShop.com

FortiGate Administration Guide - FirewallShop.com

FortiGate Administration Guide - FirewallShop.com

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

Configuring a protection profile<br />

Firewall Protection Profile<br />

Antivirus options<br />

Figure 213:Protection profile antivirus options<br />

Note: NNTP options cannot be selected. Support will be added in the future.<br />

The following options are available for antivirus through the protection profile.<br />

Virus Scan<br />

File Pattern<br />

Quarantine (log<br />

disk required)<br />

Pass fragmented<br />

emails<br />

Comfort Clients<br />

Enable or disable virus scanning for each protocol (HTTP, FTP, IMAP,<br />

POP3, SMTP, IM). Grayware, if enabled in AntiVirus > Config ><br />

Grayware, is included with the Virus Scan. Heuristic, if enabled with<br />

the CLI, is also included with the Virus Scan. Note that streaming mode<br />

is enabled automatically when you enable virus scanning.<br />

Enable or disable file pattern processing for each protocol. Files can be<br />

blocked or allowed by name, extension, or any other pattern. File<br />

pattern processing provides the flexibility to block files that may contain<br />

harmful content.<br />

File pattern drop-down list: Select which file pattern list will be used<br />

with this protection profile. The default file pattern list is called builtinpatterns.<br />

Enable or disable quarantine for each protocol. Quarantine suspect<br />

files to view them or submit files to Fortinet for analysis. The quarantine<br />

option is not displayed in the protection profile if the <strong>FortiGate</strong> does not<br />

have a hard drive or a configured FortiAnalyzer unit.<br />

Enable or disable passing fragmented email for mail protocols (IMAP,<br />

POP3, SMTP). Fragmented email cannot be scanned for viruses.<br />

Enable or disable client <strong>com</strong>forting for HTTP and FTP traffic. Client<br />

<strong>com</strong>forting provides a visual status for files that are being buffered for<br />

downloads using HTTP and FTP. Users can observe web pages being<br />

drawn or file downloads progressing. If disabled, users have no<br />

indication the <strong>FortiGate</strong> unit is buffering the download and they may<br />

cancel the transfer thinking it has failed.<br />

Interval<br />

Amount<br />

The time in seconds before client <strong>com</strong>forting starts<br />

after the download has begun. It is also the time<br />

between subsequent intervals.<br />

The number of bytes sent at each interval.<br />

<strong>FortiGate</strong> Version 3.0 MR5 <strong>Administration</strong> <strong>Guide</strong><br />

332 01-30005-0203-20070830

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!