Chapter 21 Anti-Virus

 

 

Table 73 Commands for Zone to Zone Anti-Virus Rules (continued)

COMMAND

DESCRIPTION

anti-virus rule <1..64>

Enters the anti-virus sub-command mode to edit the

 

specified direction specific rule.

[no] activate

Turns a direction specific anti-virus rule on or off.

[no] log [alert]

Sets the NXC to create a log (and optionally an alert) when

 

packets match this rule and are found to be virus-infected.

 

The no command sets the NXC not to create a log or alert

 

when packets match this rule.

[no] from-zone zone_object

Sets the zone on which the packets are received. The no

 

command removes the zone on which the packets are

 

received and resets it to the default (any). any means all

 

interfaces or VPN tunnels.

[no] to-zone zone_object

Sets the zone to which the packets are sent. The no

 

command removes the zone to which the packets are sent

 

and resets it to the default (any). any means all interfaces

 

or VPN tunnels.

[no] scan {http ftp imap4 smtp

Sets the protocols of traffic to scan for viruses.

pop3}

 

[no] infected-action {destroy

Sets the action to take when the NXC detects a virus in a

send-win-msg}

file. The file can be destroyed (filled with zeros from the

 

point where the virus was found). The NXC can also send a

 

message alert to the file’s intended user using a Microsoft

 

Windows computer connected to the to interface.

 

 

[no] bypass {white-list black-

Have the NXC not check files against a pattern list.

list}

 

[no] file-decompression [unsupported

Enable file decompression to have the NXC attempt to to

destroy]

decompress zipped files for further scanning. You can also

 

have it destroy the zipped files it cannot decompress due to

 

encryption or system resource limitations.

 

 

show [all]

Displays the details of the anti-virus rule you are

 

configuring or all the rules.

anti-virus rule move <1..64> to <1..64>

Moves a specific anti-virus rule to the number that you

 

specified.

anti-virus rule delete <1..64>

Removes a specific anti-virus rule.

anti-virus rule flush

Removes all anti-virus rules.

 

139

NXC CLI Reference Guide