beautypg.com

Fortinet 100A User Manual

Page 231

background image

Firewall

Profile CLI configuration

FortiGate-100A Administration Guide

01-28007-0068-20041203

231

This example shows how to display the settings for the firewall profile

command.

get firewall profile

This example shows how to display the settings for the spammail profile.

get firewall profile spammail

This example shows how to display the configuration for the firewall profile

command.

show firewall profile

This example shows how to display the configuration for the spammail profile.

show firewall profile spammail

smtp
{bannedword block
content-archive
fragmail
no-content-summary
oversize
quarantine scan
spamemailbwl
spamfsip
spamhdrcheck
spamhelodns
spamipbwl
spamraddrdns
spamrbl splice}

Select the actions that this profile will

use for filtering SMTP traffic for a

policy.
• Enter splice to enable the

FortiGate unit to simultaneously scan

an email and send it to the SMTP

server. If the FortiGate unit detects a

virus, it terminates the server

connection and returns an error

message to the sender, listing the

virus name and infected file name. In

this mode, the SMTP server is not

able to deliver the email if it was sent

with an infected attachment.

Throughput is higher when splice is

enabled. When splice is disabled, the

FortiGate unit scans the email first. If

the FortiGate unit detects a virus, it

removes the infected attachment,

adds a customizable message, and

sends the email to the SMTP server

for delivery. Selecting enable for the

splice keyword returns an error

message to the sender if an

attachment is infected. The receiver

does not receive the email or the

attachment. When splice is disabled

for SMTP, infected attachments are

removed and the email is forwarded

(without the attachment) to the

SMTP server for delivery to the

recipient.

Enter all the actions you want this

profile to use. Use a space to separate

the options you enter. If you want to

remove an option from the list or add

an option to the list, you must retype

the list with the option removed or

added.

fragmail

splice

All models.

firewall profile command keywords and variables (Continued)

Keywords and
variables

Description

Default

Availability