FortiGate Version 3.0 MR4 Administration Guide
340 01-30004-0203-20070102
File pattern AntiVirus
Using the allow action, this behavior can be reversed with all files being blocked
unless explicitly passed. Simply enter all the file patterns to be passed with the
allow attribute. At the end of the list, add an all-inclusive wildcard (*.*) with a block
action. Allowed files continue to antivirus scanning (if enabled) while files not
matching any allowed patterns are blocked by the wildcard at the end.
The file pattern list is preconfigured with a default list of file patterns:
• executable files (*.bat, *.com, and *.exe)
• compressed or archive files (*.gz, *.rar, *.tar, *.tgz, and *.zip)
• dynamic link libraries (*.dll)
• HTML application (*.hta)
• Microsoft Office files (*.doc, *.ppt, *.xl?)
• Microsoft Works files (*.wps)
• Visual Basic files (*.vb?)
• screen saver files (*.scr)
• program information files (*.pif)
File pattern is enabled in protection profiles. For more information, see “Antivirus
options” on page 273.
Configuring the file pattern list
File patterns can be up to 80 characters long. The maximum number of file
patterns in a list is 5000.
To add a new file pattern while viewing a file pattern list, select Create New. To edit
an existing file pattern, select the edit icon associated with the pattern.
Figure 221:New file pattern
Pattern Enter the file pattern.The file pattern can be an exact file name or
can include wildcards.
Action Select an action from the drop down list: Block or Allow.
Enable Select to enable the pattern.