12.03.2015 Views

FortiGate Administration Guide - FirewallShop.com

FortiGate Administration Guide - FirewallShop.com

FortiGate Administration Guide - FirewallShop.com

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Quarantine<br />

AntiVirus<br />

Figure 277:Quarantine Configuration (FortiAnalyzer from <strong>FortiGate</strong> with no local<br />

disk)<br />

Note: NNTP options cannot be selected. Support will be added in the future.<br />

Quarantine configuration has the following options:<br />

Options<br />

Age limit<br />

Max filesize to<br />

quarantine<br />

Quarantine Infected Files: Select the protocols from which to quarantine<br />

infected files identified by antivirus scanning.<br />

Quarantine Suspicious Files: Select the protocols from which to<br />

quarantine suspicious files identified by heuristics.<br />

Quarantine Blocked Files. Select the protocols from which to quarantine<br />

blocked files identified by antivirus file blocking. The Quarantine Blocked<br />

Files option is not available for HTTP, FTP, or IM because a file name is<br />

blocked before downloading and cannot be quarantined.<br />

The time limit in hours for which to keep files in quarantine. The age limit<br />

is used to formulate the value in the TTL column of the quarantined files<br />

list. When the limit is reached, the TTL column displays EXP. and the file<br />

is deleted (although a record is maintained in the quarantined files list).<br />

Entering an age limit of 0 (zero) means files are stored on disk<br />

indefinitely, depending on low disk space action.<br />

The maximum size of quarantined files in MB. Setting the maximum file<br />

size too large may affect performance.<br />

Low disk space Select the action to take when the local disk is full: overwrite the oldest<br />

file or drop the newest file.<br />

FortiAnalyzer<br />

Enable<br />

AutoSubmit<br />

Apply<br />

Select to enable storage of blocked and quarantined files on a<br />

FortiAnalyzer unit. See “Log&Report” on page 469 for more information<br />

about configuring a FortiAnalyzer unit.<br />

Enable AutoSubmit: enables the AutoSubmit feature. Select one or both<br />

of the options below.<br />

Use file pattern: Enables the automatic upload of files matching the file<br />

patterns in the AutoSubmit list.<br />

Use file status: Enables the automatic upload of quarantined files based<br />

on their status. Select either Heuristics or Block Pattern.<br />

Heuristics is configurable through the CLI only. See “Antivirus CLI<br />

configuration” on page 409.<br />

Select to save the configuration.<br />

<strong>FortiGate</strong> Version 3.0 MR5 <strong>Administration</strong> <strong>Guide</strong><br />

406 01-30005-0203-20070830

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!