Content profiles

Firewall configuration

 

 

Figure 50: IP/MAC settings

Content profiles

Use content profiles to apply different protection settings for content traffic that is controlled by firewall policies. You can use content profiles to:

Configure antivirus protection for HTTP, FTP, POP3, SMTP, and IMAP policies

Configure web filtering for HTTP policies

Configure email filtering for IMAP and POP3 policies

Configure oversized file and email blocking for HTTP, FTP, POP3, SMTP, and IMAP policies

Pass fragmented email for POP3, SMTP, and IMAP policies

Using content profiles, you can build protection configurations that can be applied to different types of firewall policies. This allows you to customize types and levels of protection for different firewall policies.

For example, while traffic between internal and external addresses might need strict protection, traffic between trusted internal addresses might need moderate protection. You can configure policies for different traffic services to use the same or different content profiles.

Content profiles can be added to NAT/Route mode and Transparent mode policies.

Default content profiles

Adding content profiles

Adding content profiles to policies

218

Fortinet Inc.

Page 218
Image 218
Fortinet FortiGate-800 manual Content profiles, 218