SonicWALL TZ 180 manual Updating SonicWALL GAV Signatures, Specifying Protocol Filtering

Page 28

TotalSecure Configuration Task List

Updating SonicWALL GAV Signatures

By default, the SonicWALL security appliance running SonicWALL GAV automatically checks the SonicWALL signature servers once an hour. There is no need for an administrator to constantly check for new signature updates. You can also manually update your SonicWALL GAV database at any time by clicking the Update button located in the Gateway Anti-Virus Status section.

SonicWALL GAV signature updates are secured. The SonicWALL security appliance must first authenticate itself with a pre-shared secret, created during the SonicWALL Distributed Enforcement Architecture licensing registration. The signature request is transported through HTTPS, along with full server certificate verification.

Specifying Protocol Filtering

Application-level awareness of the type of protocol that is transporting the violation allows SonicWALL GAV to perform specific actions within the context of the application to gracefully handle the rejection of the payload.

By default, SonicWALL GAV inspects all inbound HTTP, FTP, IMAP, SMTP and POP3 traffic. Generic TCP Stream can optionally be enabled to inspect all other TCP based traffic, such as non-standard ports of operation for SMTP and POP3, and IM and P2P protocols.

Note: Refer to “Protocol Handling” on page 9 for detailed descriptions of how SonicWALL GAV handles protocol traffic.

Enabling Inbound Inspection

Within the context of SonicWALL GAV, the Enable Inbound Inspection protocol traffic handling refers to the following:

Non-SMTP traffic initiating from a Trusted, Wireless, or Encrypted Zone destined to any Zone.

Non-SMTP traffic from a Public Zone destined to an Untrusted Zone.

SMTP traffic initiating from a non-Trusted Zone destined to a Trusted, Wireless, Encrypted, or Public Zone.

SMTP traffic initiating from a Trusted, Wireless, or Encrypted Zone destined to a Trusted, Wireless, or Encrypted Zone.

28 SonicWALL TZ 180 TotalSecure

Image 28
Contents Introduction What is TotalSecure?Document Scope Every SonicWALL TotalSecure solution includes the following Benefits of TotalSecureSonicWALL Gateway Anti-Virus GAV OverviewHow Does GAV Work? BenefitsSonicWALL Gateway Anti-Virus/Intrusion Prevention Features SonicWALL GAV Multi-Layered Approach Remote Site Protection Internal Network ProtectionHttp File Downloads SonicWALL GAV Architecture Server ProtectionDisabling the SonicWALL GAV/IPS Engine Protocol HandlingSmtp IPS Overview SonicWALL Intrusion Prevention ServiceHow Does IPS Work? What is a Zone? SonicWALL Anti-Spyware SonicWALL Anti-Spyware Security ServiceSpyware Threat SonicWALL Anti-Spyware CFS Overview SonicWALL Content Filtering Service PremiumHow Does CFS Premium Work? DPI Overview SonicWALL Deep Packet InspectionHow Does DPI Work? Deep Packet Inspection Flow Diagram SonicWALL Security Dashboard Security Dashboard Overview SonicWALL Security Dashboard What is Security Dashboard? How Does the Security Dashboard Work?Registering Your Appliance on MySonicWALL Registering Your Appliance on MySonicWALL TotalSecure Configuration Task List Registering Your SonicWALL Security ApplianceEnabling SonicWALL GAV Setting Up SonicWALL GAV ProtectionApplying SonicWALL GAV Protection on Interfaces Applying SonicWALL GAV Protection on Zones SonicOS Enhanced Edit ZoneViewing SonicWALL GAV Status Information Specifying Protocol Filtering Updating SonicWALL GAV SignaturesEnabling Inbound Inspection Configuring Client Alerts and an Exclusion List Enabling Outbound Smtp InspectionConfiguring a SonicWALL GAV Exclusion List Configuring Client AlertsRestricting File Transfers Viewing SonicWALL GAV Signatures Displaying SignaturesNavigating the Gateway Anti-Virus Signatures Table Enabling SonicWALL IPSEnable IPS Logging Brute-force Baseline SetupSetting Up SonicWALL Anti-Spyware Protection Enabling SonicWALL Anti-Spyware Glossary Setting Up CFS PremiumSpecifying Spyware Danger Level Protection Glossary Related Documentation Solution Document Version History Version Number Date Related Documentation SonicWALL TZ 180 TotalSecure
Related manuals
Manual 34 pages 40.02 Kb Manual 38 pages 55.88 Kb