防病毒保护

阻塞的文件和电子邮件

 

 

2 单击下载 以原始格式下载被隔离的文件。

配置隔离选项

您可以指定 FortiGate 设备是隔离被感染的文件、被阻塞的文件或两者隔离。 您可以指定从网页、FTP 和电子邮件通讯中进行隔离。您还可以设置文件的有效期限, 文件的最大尺寸和当 FortiGate 设备的硬盘满时如何处理文件。

1 进入病毒防护 > 隔离 > 隔离配置

2 对于每种通讯协议,单击隔离被感染的文件和隔离被阻塞的文件选框。 FortiGate 设备在选定的通讯中隔离被感染和被阻塞的文件。

注意:隔离阻塞文件的选项不用于 HTTP 或 FTP,因为在文件名在请求时已经被阻塞 了并且这个文件不被下载到 FortiGate 设备。

3 输入以小时为单位的有效期限 (TTL) 以指定文件在隔离区中保存的时间。 最大时间是 480 小时。当 TTL 达到 00:00 时 FortiGate 设备自动删除文件。

4 输入隔离区中被隔离文件尺寸的最大值 (兆字节)。FortiGate 设备保现有的大小超 过了这一限制的被隔离的文件。FortiGate 设备不再隔离任何新的大小超过这一限制的 文件。文件大小范围是 1-499 兆字节。输入将不限制文件的大小。

5 选择硬盘间过低复选框以指定当 FortiGate 设备的硬盘将满的时候如何处理要被隔 离的文件。

您可以选择覆盖最的文件或丢弃新的被隔离的文件。

6 单击应用。

阻塞过大的文件和电子邮件

您可以将 FortiGate 配置为使用 1% 到 15% 的可用内存来缓冲过大的文件和电子邮 件。FortiGate 设备将阻塞超过这一大小限制的文件和电子邮件,而不是对它们进行病 毒扫描和直接发送服务器或用户。FortiGate 设备会将过大的文件替换为一条替换信息 发送给 HTTP 或电子邮件代理客户端。

配置文件或电子邮件大小

1 进入 病毒防护 > 配置 > 配置。

2 以兆字节为单位输入大小限制。

3 单击应用。

对邮件片段免除阻塞

的邮件是一个大的邮件,通常被分成多个部分分别发送,在接收端再重新 组合来。默认情况下当防病毒保护被启用的时候,FortiGate 阻塞被分的邮件,把 他们替换为邮件阻塞信息发送给接收方。建议您禁用电子邮件客户端软件的邮件分功能。

为了避免病毒防护功能自动阻塞被分的邮件,您可以启用邮件内容协议 (SMTP、 POP3 和 IMAP)的传递邮件碎片功能。

FortiGate-500 安装和配置指南

225

Page 237
Image 237
Fortinet 500 manual 阻塞过大的文件和电子邮件, 对邮件片段免除阻塞, 配置隔离选项, 配置文件或电子邮件大小限制, 225

500 specifications

Fortinet 500 is a next-generation firewall (NGFW) that is part of Fortinet's acclaimed FortiGate family, designed to provide advanced security for medium to large enterprises. This appliance is known for its high performance, flexibility, and ability to protect networks from a variety of cyber threats through its robust features and technologies.

One of the main features of the Fortinet 500 is its integrated security capabilities. It combines multiple security functions into a single device, allowing organizations to manage everything from intrusion prevention and antivirus to web filtering and application control. This integration leads to simplified management and increased efficiency, as users can address multiple security needs without deploying multiple devices.

The Fortinet 500 runs on the FortiOS operating system, which is known for its simplicity and user-friendliness. FortiOS provides a centralized management interface that allows for the easy configuration and monitoring of security policies across the entire network. Additionally, the Fortinet management tools, such as FortiManager and FortiAnalyzer, enable detailed insights and reporting capabilities, helping organizations stay compliant with their security mandates.

Another characteristic that sets Fortinet 500 apart is its advanced threat intelligence, powered by the FortiGuard Labs. This global threat intelligence system continuously updates the firewall with the latest threat signatures and attack vectors, ensuring that organizations stay ahead of emerging threats. The firewall also employs machine learning and artificial intelligence to detect and mitigate sophisticated attacks in real-time.

Performance is crucial in any security appliance, and the Fortinet 500 does not disappoint. With hardware acceleration and purpose-built security processors, it delivers high throughput levels, enabling organizations to maintain productivity without sacrificing security. This level of performance is particularly beneficial in environments with heavy traffic and bandwidth demands.

In addition to these core features, the Fortinet 500 supports seamless integration with other security solutions within the Fortinet Security Fabric. This comprehensive approach allows for greater visibility and control over the entire security posture of an organization.

Overall, the Fortinet 500 is a powerful NGFW that offers a blend of advanced security features, ease of management, top-notch performance, and robust threat intelligence. Its ability to adapt to the ever-evolving landscape of cybersecurity makes it a valuable asset for businesses seeking to safeguard their digital assets and ensure seamless network operation.