Fortinet white logo
Fortinet white logo

User Guide

Configuring an antivirus profile

Configuring an antivirus profile

To configure an antivirus profile:
  1. Go to Security > Firewall Objects.
  2. Select Antivirus Profile from the Security Profiles dropdown.
  3. Click Create or select an existing profile from the list and click Edit.
  4. In the form, enter the following information:

    Settings

    Guidelines

    Name

    Enter a name for the Antivirus profile.

    Comments

    Enter comments about the Antivirus profile.

    AntiVirus scan

    Enable Antivirus scan.

    Note: The profile must be inspecting at least one protocol to enable the option.

    Feature set

    Set the inspection mode:

    • Flow-based: Scanning takes a snapshot of content packets and uses pattern matching to identify security threats in the content (default).

    • Proxy-based: Scanning reconstructs content passing through the firewall unit and inspects the content for security threats.

    Inspection Protocols

    Enable any of the following protocols:

    • HTTP

    • SMTP

    • POP3

    • IMAP

    • FTP

    • CIFS

    APT Protection Options

    Treat Windows Executables in Email Attachments as Viruses

    Enable to treat all Windows executable files in email attachments as viruses.

    Note: By default,Treat Windows Executables in Email Attachments as Viruses is disabled.

    Include Mobile Malware Protection

    Enable to include mobile malware protection.

    Note: By default, Include Mobile Malware Protection is enabled.

    Send Files to Sandbox Appliance for Inspection

    Choose from the following options:

    • None: Do not send files to sandbox appliance(default).

    • Suspicious Files Only: Send suspicious files to sandbox appliance.

    • All Supported Files: Send all supported files to sandbox appliance.

    Do not submit files types and name patterns included in

    Select from the available options, as configured by your system administrator.

    Virus Outbreak Prevention

    Use Outbreak Prevention Database

    Enable or disable using the outbreak prevention database, then select Block or Monitor.

    Note: By default, Use Outbreak Prevention Database is disabled.

    Use External Malware Block List

    Enable or disable using the external malware block list.

    Note: By default, Use External Malware Block List is disabled.

  5. Click Save.

Configuring an antivirus profile

Configuring an antivirus profile

To configure an antivirus profile:
  1. Go to Security > Firewall Objects.
  2. Select Antivirus Profile from the Security Profiles dropdown.
  3. Click Create or select an existing profile from the list and click Edit.
  4. In the form, enter the following information:

    Settings

    Guidelines

    Name

    Enter a name for the Antivirus profile.

    Comments

    Enter comments about the Antivirus profile.

    AntiVirus scan

    Enable Antivirus scan.

    Note: The profile must be inspecting at least one protocol to enable the option.

    Feature set

    Set the inspection mode:

    • Flow-based: Scanning takes a snapshot of content packets and uses pattern matching to identify security threats in the content (default).

    • Proxy-based: Scanning reconstructs content passing through the firewall unit and inspects the content for security threats.

    Inspection Protocols

    Enable any of the following protocols:

    • HTTP

    • SMTP

    • POP3

    • IMAP

    • FTP

    • CIFS

    APT Protection Options

    Treat Windows Executables in Email Attachments as Viruses

    Enable to treat all Windows executable files in email attachments as viruses.

    Note: By default,Treat Windows Executables in Email Attachments as Viruses is disabled.

    Include Mobile Malware Protection

    Enable to include mobile malware protection.

    Note: By default, Include Mobile Malware Protection is enabled.

    Send Files to Sandbox Appliance for Inspection

    Choose from the following options:

    • None: Do not send files to sandbox appliance(default).

    • Suspicious Files Only: Send suspicious files to sandbox appliance.

    • All Supported Files: Send all supported files to sandbox appliance.

    Do not submit files types and name patterns included in

    Select from the available options, as configured by your system administrator.

    Virus Outbreak Prevention

    Use Outbreak Prevention Database

    Enable or disable using the outbreak prevention database, then select Block or Monitor.

    Note: By default, Use Outbreak Prevention Database is disabled.

    Use External Malware Block List

    Enable or disable using the external malware block list.

    Note: By default, Use External Malware Block List is disabled.

  5. Click Save.