12.03.2015 Views

FortiGate Administration Guide - FirewallShop.com

FortiGate Administration Guide - FirewallShop.com

FortiGate Administration Guide - FirewallShop.com

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

IM, P2P & VoIP<br />

Configuring IM/P2P protocols<br />

Table 43: IM/P2P applications covered by FortiOS 3.0<br />

IPS<br />

Gnutella (Firewall > Protection Profile > IM/P2P)<br />

KaZaA (Firewall > Protection Profile > IM/P2P)<br />

Skype (Firewall > Protection Profile > IM/P2P)<br />

WinNY (Firewall > Protection Profile > IM/P2P)<br />

ares (Intrusion Protection > Signatures > Protocol<br />

decoder > p2p_decoder)<br />

direct_connect (Intrusion Protection > Signatures ><br />

Protocol decoder > p2p_decoder)<br />

BearShare<br />

Shareaza<br />

LimeWire<br />

Xolox<br />

Swapper<br />

iMesh<br />

MLdonkey<br />

Gnucleus<br />

Morpheus<br />

Openext<br />

Mutella<br />

Qtella<br />

Qcquisition<br />

Acquisition<br />

NapShare<br />

gtk-gnutella<br />

KaZaA<br />

Skype<br />

WinNY<br />

Ares Galaxy<br />

DC++<br />

Applications<br />

Configuring IM/P2P protocols<br />

Different organizations require different policies regarding IM/P2P. The <strong>FortiGate</strong><br />

unit allows you to configure your unit in the way that best serves your needs.<br />

How to enable and disable IM/P2P options<br />

This section will tell you the four main locations to enable or disable the IM/P2P<br />

options. This section includes how to enable predefined signatures, custom<br />

signatures and unknown user policies.<br />

To enable predefined IM/P2P signatures in intrusion protection<br />

1 Go to Intrusion Protection > Signatures > Predefined.<br />

2 Use the signature group filter to search for the IM and P2P signatures.<br />

3 Enable the signature by selecting the Enable box.<br />

4 Enable logging for a signature by selecting the Logging box.<br />

5 In the row that corresponds to the signature you want to edit, select the Edit icon.<br />

6 Set the action and severity.<br />

7 Select OK.<br />

To create custom IM/P2P signatures for unknown protocols<br />

1 Go to Intrusion Protection > Signature > Custom > Create New.<br />

<strong>FortiGate</strong> Version 3.0 MR5 <strong>Administration</strong> <strong>Guide</strong><br />

01-30005-0203-20070830 461

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!