Sandbox Community Cloud
The Sandbox Community Cloud is included in the Sandbox Threat Intelligence subscription service. When enabled, the Community Cloud provides an avenue for customers to share threat intelligence with FortiSandbox worldwide and FortiGuard. FortiGuard acts as the host for the information sharing, while each subscriber (who enables Submissions) contributes. All FortiSandbox are able to access the cloud query to check if the SCC has seen a specific threat.
You can use the community cloud to:
- Query a file to check if an existing verdict is available. See, File Scan Flow.
- Display an icon if the malware is available in the FortiSandbox Community Cloud. See, Operation Center.
-
Skip Dynamic scan on existing files (when a similar file exists in the Cloud) and only forward new files to Dynamic scan. See, Cloud Storage and Network Share.
Community Cloud Query is enabled by default. To disable go to Scan Policy and Object > Scan Profile > Scan Profile Advanced Tab. |