Viewing quarantined files

Quarantine

Date & Time

The date and time the FortiGate quarantined the file, in the format

 

yyyy/mm/dd hh:mm:ss. The time and date indicates the time

 

that the first file was quarantined, if duplicate files are quarantined.

Service

The service by which the quarantined file was attempting to be

 

transmitted, such as SMTP.

Checksum

A 32-bit checksum the FortiGate unit created from the file.

Status Description

A short description of the reason why the FortiGate unit

 

quarantined the file.

DC

Duplicate count. A count of how many duplicates of the same file

 

were quarantined. A rapidly increasing number can indicate a

 

virus outbreak.

Size (Bytes)

The file size of the quarantined file.

Action

Select Delete to remove the quarantined file from the

 

FortiAnalyzer hard disk.

 

Select Detail to view more information about the file, including the

 

date and time of the quarantine and the sender and intended

 

recipient of the file.

 

Select Download to save the file to another location when it is

 

deemed safe for the recipient to collect.

 

Caution: Quarantined files are suspected or known to contain a

 

virus or other network threat. Inspecting quarantine files involves a

 

significant security risk. Use caution when downloading

 

quarantined files.

FortiAnalyzer Version 3.0 MR7 Administration Guide

132

05-30007-0082-20080908

Page 140
Image 140
Fortinet 3.0 MR7 manual Date & Time, Service, Checksum, Status Description