12.03.2015 Views

FortiGate Administration Guide - FirewallShop.com

FortiGate Administration Guide - FirewallShop.com

FortiGate Administration Guide - FirewallShop.com

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Antispam<br />

Antispam<br />

3 IP BWL check<br />

4 Banned word check on email body<br />

5 Return e-mail DNS check, FortiGuard AntiSpam check, DNSBL & ORDBL check<br />

Anti-spam filter controls<br />

For SMTP, POP3, and IMAP<br />

Filters requiring a query to a server and a reply (FortiGuard Antispam Service and<br />

DNSBL/ORDBL) are run simultaneously. To avoid delays, queries are sent while<br />

other filters are running. The first reply to trigger a spam action takes effect as<br />

soon as the reply is received.<br />

Each spam filter passes the email to the next if no matches or problems are found.<br />

If the action in the filter is Mark as Spam, the <strong>FortiGate</strong> unit will tag or discard<br />

(SMTP only) the email according to the settings in the protection profile. If the<br />

action in the filter is Mark as Clear, the email is exempt from any remaining filters.<br />

If the action in the filter is Mark as Reject, the email session is dropped. Rejected<br />

SMTP email messages are substituted with a configurable replacement message.<br />

Spam filters are configured for system-wide use, but enabled on a per profile<br />

basis.<br />

Table 41 describes the Antispam settings and where to configure and access<br />

them.<br />

Table 41: AntiSpam and Protection Profile spam filtering configuration<br />

Protection Profile spam filtering options AntiSpam setting<br />

IP address FortiGuard Antispam check System > Maintenance ><br />

FortiGuard Centre<br />

Enable or disable Fortinet’s antispam service<br />

called FortiGuard Antispam. FortiGuard<br />

Antispam is Fortinet’s own DNSBL server<br />

that provides spam IP address and URL<br />

blacklists. Fortinet keeps the FortiGuard<br />

Antispam IP and URLs up-to-date as new<br />

spam source are found.<br />

IP address BWL check<br />

Black/white list check. Enable or disable<br />

checking in<strong>com</strong>ing IP addresses against the<br />

configured spam filter IP address list. (SMTP<br />

only.)<br />

DNSBL & ORDBL check<br />

Enable or disable checking email traffic<br />

against configured DNS Blackhole List<br />

(DNSBL) and Open Relay Database List<br />

(ORDBL) servers.<br />

HELO DNS lookup<br />

Enable FortiGuard Antispam, check the<br />

status of the FortiGuard Antispam server,<br />

view the license type and expiry date, and<br />

configure the cache. For details, see<br />

“Configuring the <strong>FortiGate</strong> unit for FDN<br />

and FortiGuard services” on page 188<br />

AntiSpam > Black/White List > IP Address<br />

Add to and edit IP addresses to the list.<br />

You can configure the action to take as<br />

spam, clear, or reject for each IP address.<br />

You can place an IP address anywhere in<br />

the list. The filter checks each IP address<br />

in sequence. (SMTP only.)<br />

Command line only<br />

Add or remove DNSBL and ORDBL<br />

servers to and from the list. You can<br />

configure the action to take as spam or<br />

reject for email identified as spam from<br />

each server (SMTP only).<br />

DNSBL and ORDBL configuration can only<br />

be changed using the <strong>com</strong>mand line<br />

interface. For more information, see the<br />

<strong>FortiGate</strong> CLI Reference.<br />

n/a<br />

<strong>FortiGate</strong> Version 3.0 MR5 <strong>Administration</strong> <strong>Guide</strong><br />

444 01-30005-0203-20070830

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!