Fortinet white logo
Fortinet white logo

CLI Reference

profile cousin-domain

profile cousin-domain

Use this command to mitigate business email compromise (BEC) email-impersonation risks. Domain names may be deliberately misspelled, either by character removal, substitution, and/or transposition, in order to make emails look as though they originate from trusted internal sources.

Configure cousin domains to define those domain names that should be subjected to cousin domain scanning and those domains that are exempt from scanning.

Once created, cousin domain profiles can be referenced in antispam profiles.See cousin-domain-profile <cousin-profile_name>.

Syntax

config profile cousin-domain

edit <profile_name>

config entry

edit <rule_id>

set domain-name-type {wildcard | regex}

set domain-name <domain-name_pattern>

next

end

config exempt

edit <rule_id>

set domain-name-type {wildcard | regex}

set domain-name <domain-name_pattern>

next

end

end

Variable

Description

Default

<profile_name> Enter the name of the profile.
<rule_id>

Enter the identifying number of the rule.

domain-name <domain-name_pattern>

Enter a wildcard or regular expression pattern for email domain names that match the rule.

domain-name-type {wildcard | regex}

Select the type of pattern matching for the rule.

regex

profile cousin-domain

profile cousin-domain

Use this command to mitigate business email compromise (BEC) email-impersonation risks. Domain names may be deliberately misspelled, either by character removal, substitution, and/or transposition, in order to make emails look as though they originate from trusted internal sources.

Configure cousin domains to define those domain names that should be subjected to cousin domain scanning and those domains that are exempt from scanning.

Once created, cousin domain profiles can be referenced in antispam profiles.See cousin-domain-profile <cousin-profile_name>.

Syntax

config profile cousin-domain

edit <profile_name>

config entry

edit <rule_id>

set domain-name-type {wildcard | regex}

set domain-name <domain-name_pattern>

next

end

config exempt

edit <rule_id>

set domain-name-type {wildcard | regex}

set domain-name <domain-name_pattern>

next

end

end

Variable

Description

Default

<profile_name> Enter the name of the profile.
<rule_id>

Enter the identifying number of the rule.

domain-name <domain-name_pattern>

Enter a wildcard or regular expression pattern for email domain names that match the rule.

domain-name-type {wildcard | regex}

Select the type of pattern matching for the rule.

regex