Fortinet black logo

Control Manager

Custom scans overview

Copy Link
Copy Doc ID c0e495af-7299-11e9-81a4-00505692583a:495512
Download PDF

Custom scans overview

Scans are configured to evaluate hosts connecting to the network. These scans search the host computer for things such as anti-virus software or a particular version of an operating system. The categories within which the scan can search are fairly broad. To scan for very specific items, such as a file on the hard drive or a patch, you must create Custom Scans and then link Custom Scans to a general Scan.

The severity level set in the Custom Scan determines how the host is treated when it fails a Custom Scan. Levels can be set to deny the host access to the network or to just send a warning. See Custom scans severity level for additional details.

Custom Scans that are associated with a Scan can be configured to run at more frequent intervals than the Scan itself by setting up a Monitor in the Scan. This requires that the host have the Persistent Agent installed. See Monitor custom scans.

In addition to running a Custom Scan on any host that is evaluated by the associated Scan, you can use Custom Scans to refine or enhance other Scans. For example, if you have set up a Scan to check hosts for one of the following anti-virus programs: AVG 8.5, Kaspersky, or Norton. Within the Kaspersky setting you can add a Custom Scan to search for a version that must be installed. This Custom Scan will not be run for hosts using AVG 8.5 or Norton. It will be run for hosts using Kaspersky.

Custom Scans are created differently depending on the operating system on which they will run. You must create separate Custom Scans for each operating system. For instructions on creating Custom Scans see the following:

Create custom scans for windows

Create custom scans for macOS

Create custom scans for Linux

When hosts fail a Custom Scan, they are redirected to the web page designated within the Custom Scan configuration. These web pages are not provided as part of the Portal Configuration. They must be created and stored on your FortiNAC appliance in the following directory:

/bsc/Registration/registration/site

Within the directory listed above there are other web pages that might serve as a template for the custom scans web pages. One option is to copy the antivirus.jsp file to a new name and edit the text within that file to accommodate your custom scans.

User created web pages that display when a host fails a custom scan are now stored in
/bsc/Registration/registration/site. If you are using Portal Version 1 and have legacy pages that are stored in /bsc/Registration/registration/sma you do not need to move them to the new directory, they will continue to display to hosts as needed.

Custom scans overview

Scans are configured to evaluate hosts connecting to the network. These scans search the host computer for things such as anti-virus software or a particular version of an operating system. The categories within which the scan can search are fairly broad. To scan for very specific items, such as a file on the hard drive or a patch, you must create Custom Scans and then link Custom Scans to a general Scan.

The severity level set in the Custom Scan determines how the host is treated when it fails a Custom Scan. Levels can be set to deny the host access to the network or to just send a warning. See Custom scans severity level for additional details.

Custom Scans that are associated with a Scan can be configured to run at more frequent intervals than the Scan itself by setting up a Monitor in the Scan. This requires that the host have the Persistent Agent installed. See Monitor custom scans.

In addition to running a Custom Scan on any host that is evaluated by the associated Scan, you can use Custom Scans to refine or enhance other Scans. For example, if you have set up a Scan to check hosts for one of the following anti-virus programs: AVG 8.5, Kaspersky, or Norton. Within the Kaspersky setting you can add a Custom Scan to search for a version that must be installed. This Custom Scan will not be run for hosts using AVG 8.5 or Norton. It will be run for hosts using Kaspersky.

Custom Scans are created differently depending on the operating system on which they will run. You must create separate Custom Scans for each operating system. For instructions on creating Custom Scans see the following:

Create custom scans for windows

Create custom scans for macOS

Create custom scans for Linux

When hosts fail a Custom Scan, they are redirected to the web page designated within the Custom Scan configuration. These web pages are not provided as part of the Portal Configuration. They must be created and stored on your FortiNAC appliance in the following directory:

/bsc/Registration/registration/site

Within the directory listed above there are other web pages that might serve as a template for the custom scans web pages. One option is to copy the antivirus.jsp file to a new name and edit the text within that file to accommodate your custom scans.

User created web pages that display when a host fails a custom scan are now stored in
/bsc/Registration/registration/site. If you are using Portal Version 1 and have legacy pages that are stored in /bsc/Registration/registration/sma you do not need to move them to the new directory, they will continue to display to hosts as needed.