226
01-28006-0100-20041105
Fortinet Inc.
Protection profile
Firewall
This section describes:
•
Protection profile list
•
Default protection profiles
•
Protection profile options
•
Configuring protection profiles
•
CLI configuration
Protection profile list
Figure 104:Sample list showing the default protection profiles
The IP pool list has the following icons and features.
Default protection profiles
The FortiGate unit comes preconfigured with four protection profiles.
Create New
Select Create New to add an IP pool.
Name
The start IP defines the start of an address range.
The Delete and Edit/View icons.
Note:
A protection profile cannot be deleted (and the Delete icon is not visible) if it is selected in
a firewall policy or included in a user group.
Strict
To apply maximum protection to HTTP, FTP, IMAP, POP3, and SMTP traffic.
You may not wish to use the strict protection profile under normal
circumstances but it is available if you have extreme problems with viruses
and require maximum screening.
Scan
To apply virus scanning to HTTP, FTP, IMAP, POP3, and SMTP traffic.
Quarantine is also selected for all content services. On FortiGate models
with a hard drive, if antivirus scanning finds a virus in a file, the file is
quarantined on the FortiGate hard disk. If required, system administrators
can recover quarantined files.
Web
To apply virus scanning and web content blocking to HTTP traffic. You can
add this protection profile to firewall policies that control HTTP traffic.
Unfiltered
To apply no scanning, blocking or IPS. Use the unfiltered content profile if
you do not want to apply content protection to content traffic. You can add
this protection profile to firewall policies for connections between highly
trusted or highly secure networks where content does not need to be
protected.
Summary of Contents for FortiGate FortiGate-500A
Page 24: ...24 01 28006 0100 20041105 Fortinet Inc Customer service and technical support Introduction...
Page 46: ...46 01 28006 0100 20041105 Fortinet Inc Changing the FortiGate firmware System status...
Page 72: ...72 01 28006 0100 20041105 Fortinet Inc FortiGate IPv6 support System network...
Page 80: ...80 01 28006 0100 20041105 Fortinet Inc Dynamic IP System DHCP...
Page 110: ...110 01 28006 0100 20041105 Fortinet Inc FortiManager System config...
Page 116: ...116 01 28006 0100 20041105 Fortinet Inc Access profiles System administration...
Page 134: ...134 01 28006 0100 20041105 Fortinet Inc Shutdown System maintenance...
Page 248: ...248 01 28006 0100 20041105 Fortinet Inc CLI configuration Users and authentication...
Page 324: ...324 01 28006 0100 20041105 Fortinet Inc CLI configuration Antivirus...
Page 386: ...386 01 28006 0100 20041105 Fortinet Inc Glossary...
Page 394: ...394 01 28006 0100 20041105 Fortinet Inc Index...