Fortinet white logo
Fortinet white logo

Administration Guide

Quarantine

Quarantine

Create and edit quarantine locations in the Security Fabric. Quarantine supports SMB, NFS, AWS, and Azure mount types. To view the quarantine information, go to Security Fabric > Quarantine .

Note

Quarantine is only available in the Primary node of an HA cluster

The following options are available:

Create New

Select to create a new quarantine location.

Edit

Select an entry from the list and then select Edit in the toolbar to edit the entry selected. When editing an entry you can select to test connectivity to ensure that the quarantine location is accessible.

Delete

Select an entry from the list and then select Delete in the toolbar to remove the entry selected.

Test Connection

Select an entry from the list and then select Test Connection in the toolbar to test the connection. The result will show in the top message panel and will disappear after a few seconds.

The following information is displayed:

Name

The name of the quarantine location.

Type

The mount type.

Share Path

The file share path.

Enabled

Displays if the quarantine location is enabled.

Status

Displays the quarantine access status. One of the following states:
  • Quarantine is Accessible
  • Quarantine Down
To create a new quarantine entry:
  1. Go to Security Fabric > Quarantine.
  2. Click the Create New button from the toolbar.
  3. Configure the following options:

    Enabled

    Select to enable quarantine location.

    Quarantine Name

    Enter the quarantine name.

    Mount Type

    Select the mount type from the dropdown list. The following options are available:

    • CIFS (SMB v1.0, v2.0, v2.1 and v3.0)
    • NFSv2, NFSv3, NFSv4
    • AWS S3, AWS S3 BJ, AWS S3 NX

    • Azure File Share

    Server Name/IP

    Enter the server fully qualified domain name (FQDN) or IP address.

    Share Path

    Enter the file share path. In the format /path1/path2.

    Username

    Enter a user name. For a domain user, use the format domain_name\user_name.

    Password

    Enter the password.

    Confirm Password

    Enter the password a second time for verification.

    Keep Original File At Current Location

    Select to keep the original file at the current location when a file is quarantined from a network share. By default, the original file is kept at its current location when being moved.

    Description

    Enter an optional description for the quarantine location entry.

  4. Select OK to save the entry.
To edit a quarantine:
  1. Go to Security Fabric > Quarantine.
  2. Select a quarantine.
  3. Click the Edit button from the toolbar.
  4. Make the necessary changes.
  5. Click OK to save the entry.
To delete a quarantine:
  1. Go to Security Fabric > Quarantine.
  2. Select a quarantine.
  3. Click the Delete button from the toolbar.
  4. Click Yes I'm sure button from the Are you sure confirmation box.

Quarantine

Quarantine

Create and edit quarantine locations in the Security Fabric. Quarantine supports SMB, NFS, AWS, and Azure mount types. To view the quarantine information, go to Security Fabric > Quarantine .

Note

Quarantine is only available in the Primary node of an HA cluster

The following options are available:

Create New

Select to create a new quarantine location.

Edit

Select an entry from the list and then select Edit in the toolbar to edit the entry selected. When editing an entry you can select to test connectivity to ensure that the quarantine location is accessible.

Delete

Select an entry from the list and then select Delete in the toolbar to remove the entry selected.

Test Connection

Select an entry from the list and then select Test Connection in the toolbar to test the connection. The result will show in the top message panel and will disappear after a few seconds.

The following information is displayed:

Name

The name of the quarantine location.

Type

The mount type.

Share Path

The file share path.

Enabled

Displays if the quarantine location is enabled.

Status

Displays the quarantine access status. One of the following states:
  • Quarantine is Accessible
  • Quarantine Down
To create a new quarantine entry:
  1. Go to Security Fabric > Quarantine.
  2. Click the Create New button from the toolbar.
  3. Configure the following options:

    Enabled

    Select to enable quarantine location.

    Quarantine Name

    Enter the quarantine name.

    Mount Type

    Select the mount type from the dropdown list. The following options are available:

    • CIFS (SMB v1.0, v2.0, v2.1 and v3.0)
    • NFSv2, NFSv3, NFSv4
    • AWS S3, AWS S3 BJ, AWS S3 NX

    • Azure File Share

    Server Name/IP

    Enter the server fully qualified domain name (FQDN) or IP address.

    Share Path

    Enter the file share path. In the format /path1/path2.

    Username

    Enter a user name. For a domain user, use the format domain_name\user_name.

    Password

    Enter the password.

    Confirm Password

    Enter the password a second time for verification.

    Keep Original File At Current Location

    Select to keep the original file at the current location when a file is quarantined from a network share. By default, the original file is kept at its current location when being moved.

    Description

    Enter an optional description for the quarantine location entry.

  4. Select OK to save the entry.
To edit a quarantine:
  1. Go to Security Fabric > Quarantine.
  2. Select a quarantine.
  3. Click the Edit button from the toolbar.
  4. Make the necessary changes.
  5. Click OK to save the entry.
To delete a quarantine:
  1. Go to Security Fabric > Quarantine.
  2. Select a quarantine.
  3. Click the Delete button from the toolbar.
  4. Click Yes I'm sure button from the Are you sure confirmation box.