62
freeGuard 100 stops theupload, attempts to delete
the partial file from the FTP server, and displays a
replacement message for the user. To delete the file
successfully, the server permissions must be set to
allow deletes. When downloading files from an FTP
server the freeGuard 100 sends 1 byte every 30
seconds toprevent the client from timing out during
scanning and download. If a virus is detected, the
freeGuard 100 stops the download and displays
areplacement message for the user. The user must
then delete the partially downloaded file. This partial
file is harmless. Enabling splice reduces timeouts
when uploading and downloading large files. When
splice is disabled for ftp, the freeGuard 100unit
buffers the file for scanning before uploading itto the
FTP server. If the file is clean, the freeGuard 100
allows the upload or download to continue. Enter all
the actions you want this profile to use. Use a space
to separate the options you enter. If you want to
remove an option from the list or add an option to the
list, you must retype the list with the option removed
or added.
http {bannedword block
catblock chunkedbypass
content-archive no-
content-summary
oversize rangeblock
scan scriptfilter urlblock
urlexempt}
Select the actions that this profile uses for filtering
HTTP traffic for a policy. • Enter bannedword to
enable web content blocking based on the banned
word list. • Enter block to enable deleting files with
blocked file patterns even if the files do not contain
viruses. • Enter catblock to enable web category
blocking. • Enter chunkedbypass to allow web sites
that use chunked encoding for HTTP to bypass the
firewall. Chunked encoding means the HTTP
messagebody is altered to allow it to be transferred
in a series of chunks. Use this feature at your own
risk. Malicious content could enter your network if
you allow web content to bypass the firewall. • Enter
content-archive to enable archiving ofHTTP content
meta-information to a appliance. • Enter no-content-
summary to disable displaying a content log
summary which containsstatistics since bootup/reset
and the most recentcontent logs split into email, ftp,
and httpcategories. • Enter oversize to enable
blocking files that are over the large file size limit. •
Enter rangeblock to block downloading parts of a file
that have already been partially downloaded.
Enabling this option prevents the unintentional
download of virus files hidden in fragmented files.
Note that some types of files, such as PDF,fragment
files to increase download speed and enabling this
option can cause downloadinterruptions. • Enter
scan to enable scanning files for viruses and worms.
No default.
Summary of Contents for freeGuard 100
Page 1: ...freeGuard 100 UTM Firewall CLI USER S MANUAL P N F0025000 Rev 1 1...
Page 3: ......
Page 7: ......
Page 87: ...80 The config ips anomaly command has 1 subcommand config limit...
Page 183: ...176...