FortiGate Version 3.0 MR4 Administration Guide
348 01-30004-0203-20070102
Antivirus CLI configuration AntiVirus
config antivirus heuristic
The FortiGate heuristic antivirus engine performs tests on files to detect virus-like
behavior or known virus indicators. Heuristic scanning is performed last, after file
blocking and virus scanning have found no matches. In this way, heuristic
scanning may detect new viruses, but may also produce some false positive
results.
The heuristic engine is enabled by default to pass suspected files to the recipient
and send a copy to quarantine. Once configured in the CLI, heuristic scanning is
enabled in a protection profile when Virus Scan is enabled.
Use the heuristic command to change the heuristic scanning mode.
config antivirus quarantine
The quarantine command also allows configuration of heuristic related settings.
This feature is available on models numbered 200 and higher.
config antivirus service <service_name>
Use this command to configure how the FortiGate unit handles antivirus scanning
of large files in HTTP, FTP, IM, POP3, IMAP, or SMTP traffic, and what ports the
FortiGate unit scans for the service.