FortiGate Version 3.0 MR4 Administration Guide
12 01-30004-0203-20070102
Contents
Config ............................................................................................................. 345
Viewing the virus list ................................................................................. 345
Viewing the grayware list .......................................................................... 346
Antivirus CLI configuration .......................................................................... 347
system global optimize.............................................................................. 347
config antivirus heuristic............................................................................ 348
config antivirus quarantine........................................................................ 348
config antivirus service <service_name>.................................................. 348
Intrusion Protection....................................................................... 349
About intrusion protection ........................................................................... 349
IPS settings and controls .......................................................................... 350
When to use IPS....................................................................................... 350
Predefined signatures................................................................................... 351
Viewing the predefined signature list ........................................................ 351
Configuring predefined signatures............................................................ 353
Fine tuning IPS predefined signatures for enhanced system performance 353
Custom signatures........................................................................................ 354
Viewing the custom signature list.............................................................. 354
Creating custom signatures ...................................................................... 355
Protocol Decoders......................................................................................... 356
Viewing the protocol decoder list .............................................................. 356
Upgrading IPS protocol decoder list ......................................................... 357
Anomalies ...................................................................................................... 357
Viewing the traffic anomaly list.................................................................. 358
Configuring IPS traffic anomalies.............................................................. 358
IPS CLI configuration.................................................................................... 359
system autoupdate ips.............................................................................. 359
ips global fail-open.................................................................................... 359
ips global ip_protocol ................................................................................ 359
ips global socket-size................................................................................ 359
(config ips anomaly) config limit................................................................ 359
Web Filter........................................................................................ 361
Order of web filtering .................................................................................... 361
How web filtering works ............................................................................... 361
Web filter controls......................................................................................... 362