Firewall Protection Profile Configuring a protection profile
FortiGate Version 4.0 Administration Guide
01-400-89802-20090424 417
http://docs.fortinet.com/ • Feedback
extract any URL links. These URL links are sent to a FortiGuard Antispam server to
determine if any are listed. Spam messages often contain URL links to advertisements
(also called spamvertizing). If a URL match is found, FortiGuard Antispam terminates the
session. If FortiGuard Antispam does not find a match, the email server sends the email to
the recipient. The email checksum filter calculates the checksum of an email message and
sends this checksum to the FortiGuard servers to determine if the checksum is in the
blacklist. The FortiGate unit then passes or marks/blocks the email message according to
the server response.
To configure spam filtering options, go to Firewall > Protection Profile. Select Create New
to add a protection profile, or the Edit icon beside an existing protection profile. Then
select the Expand Arrow beside Spam Filtering, enter the information as described below,
and select OK.
You can configure spam filtering for IMAP, POP3, and SMTP email. If your FortiGate unit
supports SSL content scanning and inspection you can also configure spam filtering for
IMAPS, POP3S, and SMTPS email. For information about SSL content scanning and
inspection, see “SSL content scanning and inspection” on page 399.
For more information about this service, see
“FortiGuard Antispam service” on page 265
and “Configuring the FortiGate unit for FDN and FortiGuard subscription services” on
page 266.
For more spam filter configuration options, see “Antispam” on page 495.
Figure 260: Protection Profile Spam Filtering options
Note: Some popular email clients cannot filter messages based on the MIME header. For
these clients, select to tag email message subject lines instead.