Firewall
Protection profile
FortiGate-60M Administration Guide
01-28007-0144-20041217
233
This example shows how to display the settings for the
firewall profile
command.
get firewall profile
This example shows how to display the settings for the
spammail
profile.
get firewall profile spammail
This example shows how to display the configuration for the
firewall profile
command.
show firewall profile
This example shows how to display the configuration for the
spammail
profile.
show firewall profile spammail
smtp
{bannedword block
content-archive
fragmail
no-content-summary
oversize
quarantine scan
spamemailbwl
spamfsip
spamhdrcheck
spamhelodns
spamipbwl
spamraddrdns
spamrbl
splice
}
Select the actions that this profile will
use for filtering SMTP traffic for a
policy.
• Enter
splice
to enable the
FortiGate unit to simultaneously scan
an email and send it to the SMTP
server. If the FortiGate unit detects a
virus, it terminates the server
connection and returns an error
message to the sender, listing the
virus name and infected file name. In
this mode, the SMTP server is not
able to deliver the email if it was sent
with an infected attachment.
Throughput is higher when splice is
enabled. When splice is disabled, the
FortiGate unit scans the email first. If
the FortiGate unit detects a virus, it
removes the infected attachment,
adds a customizable message, and
sends the email to the SMTP server
for delivery. Selecting enable for the
splice keyword returns an error
message to the sender if an
attachment is infected. The receiver
does not receive the email or the
attachment. When splice is disabled
for SMTP, infected attachments are
removed and the email is forwarded
(without the attachment) to the
SMTP server for delivery to the
recipient.
Enter all the actions you want this
profile to use. Use a space to separate
the options you enter. If you want to
remove an option from the list or add
an option to the list, you must retype
the list with the option removed or
added.
fragmail
splice
All models.
firewall profile command keywords and variables (Continued)
Keywords and
variables
Description
Default
Availability
Summary of Contents for FortiGate FortiGate-60M
Page 12: ...Contents 12 01 28007 0144 20041217 Fortinet Inc Index 369 ...
Page 44: ...44 01 28007 0144 20041217 Fortinet Inc Changing the FortiGate firmware System status ...
Page 74: ...74 01 28007 0144 20041217 Fortinet Inc FortiGate IPv6 support System network ...
Page 82: ...82 01 28007 0144 20041217 Fortinet Inc Dynamic IP System DHCP ...
Page 116: ...116 01 28007 0144 20041217 Fortinet Inc Access profiles System administration ...
Page 234: ...234 01 28007 0144 20041217 Fortinet Inc Protection profile Firewall ...
Page 246: ...246 01 28007 0144 20041217 Fortinet Inc CLI configuration Users and authentication ...
Page 278: ...278 01 28007 0144 20041217 Fortinet Inc CLI configuration VPN ...
Page 340: ...340 01 28007 0144 20041217 Fortinet Inc Using Perl regular expressions Spam filter ...
Page 358: ...358 01 28007 0144 20041217 Fortinet Inc CLI configuration Log Report ...
Page 376: ...376 01 28007 0144 20041217 Fortinet Inc Index ...