12.03.2015 Views

FortiGate Administration Guide - FirewallShop.com

FortiGate Administration Guide - FirewallShop.com

FortiGate Administration Guide - FirewallShop.com

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Adding a protection profile to a policy<br />

Firewall Protection Profile<br />

Adding a protection profile to a policy<br />

Enable protection profiles for firewall policies with action set to allow or IPSec and<br />

with service set to ANY, HTTP, FTP, IMAP, POP3, SMTP, or a service group that<br />

includes these services.<br />

If virtual domains are enabled on the <strong>FortiGate</strong> unit, protection profiles must be<br />

added to policies in each virtual domain. To access the policy, select a virtual<br />

domain from the main menu.<br />

1 Go to Firewall > Policy.<br />

2 Select a policy list to which to add a protection profile.<br />

For example, to enable network protection for files downloaded from the web by<br />

internal network users, select an internal to external policy list.<br />

3 Select Create New to add a policy, or select Edit for the policy to modify.<br />

4 Select protection profile.<br />

5 Select a protection profile from the list.<br />

6 Configure the remaining policy settings, if required.<br />

7 Select OK.<br />

8 Repeat this procedure for any policies for which to enable network protection.<br />

Protection profile CLI configuration<br />

Use the config firewall profile CLI <strong>com</strong>mand to add, edit or delete<br />

protection profiles. Use protection profiles to apply different protection settings for<br />

traffic controlled by firewall policies.<br />

Note: For <strong>com</strong>plete descriptions and examples of how to use CLI <strong>com</strong>mands, see the<br />

<strong>FortiGate</strong> CLI Reference.<br />

<strong>FortiGate</strong> Version 3.0 MR5 <strong>Administration</strong> <strong>Guide</strong><br />

342 01-30005-0203-20070830

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!