Fortinet white logo
Fortinet white logo

Test installation with a file scan

Test installation with a file scan

To verify the configuration is successful, perform an on-demand file scan with a Windows VM clone.

To test the installation:
  1. In FortiSandbox, go to Scan Policy and Object > VM Settings and change Clone # to 1. Click Apply to trigger the VM initialization.

  2. In a new CLI console window, check the VM clone initialization using the command: diagnose-debug vminit
  3. After the VM is initialized, the Status of the VM in the GUI will be In Use. Go to the Dashboard >Connectivity and Services to verify there is a green checkmark beside Custom VM.

  4. To associate file extensions to the custom VM, go to Scan Policy and Object> Scan Profile and click the VM Association tab.
  5. Test the installation:
    1. Go to Scan Job > File On-Demand > Submit File.
      1. Select the file and enable Advanced Options.
      2. Skip all the static scan.
      3. Enable Force to Scan and Force to scane inside the following VMs.
      4. Select the VM you just initialized.
      5. Click Submit.
    2. When the scan is finished, click the listed job then click View Details to view the job details in the File On-Demand page.
  6. (Optional) Interaction with a custom VM clone during scan:
    1. Go to Scan Job > File On-Demand or URL on-Demand and click Submit File or Submit File/URL.
    2. Enable Force to scan and Allow interaction.
    3. Select Force to scan inside the following VMs and select the custom VM.
    4. Click Submit.
    5. Go to Scan Policy and Object > VM Settings and click VM Screenshot.
    6. When the icon in the Interaction column is enabled, click the view icon to establish an RDP tunnel.

    7. Click Yes to manually start the scan process with VM Interaction.

    8. When the FortiSandbox tracer engine displays the PDF/Office sample, execute the exe sample or open the URL. You can click Yes to manually stop the scan process.
    9. When the scan is finished, go to the Job Details page to view the scan results.

Test installation with a file scan

Test installation with a file scan

To verify the configuration is successful, perform an on-demand file scan with a Windows VM clone.

To test the installation:
  1. In FortiSandbox, go to Scan Policy and Object > VM Settings and change Clone # to 1. Click Apply to trigger the VM initialization.

  2. In a new CLI console window, check the VM clone initialization using the command: diagnose-debug vminit
  3. After the VM is initialized, the Status of the VM in the GUI will be In Use. Go to the Dashboard >Connectivity and Services to verify there is a green checkmark beside Custom VM.

  4. To associate file extensions to the custom VM, go to Scan Policy and Object> Scan Profile and click the VM Association tab.
  5. Test the installation:
    1. Go to Scan Job > File On-Demand > Submit File.
      1. Select the file and enable Advanced Options.
      2. Skip all the static scan.
      3. Enable Force to Scan and Force to scane inside the following VMs.
      4. Select the VM you just initialized.
      5. Click Submit.
    2. When the scan is finished, click the listed job then click View Details to view the job details in the File On-Demand page.
  6. (Optional) Interaction with a custom VM clone during scan:
    1. Go to Scan Job > File On-Demand or URL on-Demand and click Submit File or Submit File/URL.
    2. Enable Force to scan and Allow interaction.
    3. Select Force to scan inside the following VMs and select the custom VM.
    4. Click Submit.
    5. Go to Scan Policy and Object > VM Settings and click VM Screenshot.
    6. When the icon in the Interaction column is enabled, click the view icon to establish an RDP tunnel.

    7. Click Yes to manually start the scan process with VM Interaction.

    8. When the FortiSandbox tracer engine displays the PDF/Office sample, execute the exe sample or open the URL. You can click Yes to manually stop the scan process.
    9. When the scan is finished, go to the Job Details page to view the scan results.