Fortinet FortiGate 4000 User Manual
Page 190
190
Fortinet Inc.
Replacement messages
System configuration
%%SOURCE_IP%%
The IP address from which the block file was
received. For email this is the IP address of the
email server that sent the email containing the
blocked file. For HTTP this is the IP address of
web page that sent the blocked file.
%%DEST_IP%%
The IP address of the computer that would have
received the blocked file. For email this is the IP
address of the user’s computer that attempted to
download the message from which the file ware
removed.
%%EMAIL_FROM%% The email address of the sender of the message
from which the file was removed.
%%EMAIL_TO%%
The email address of the intended receiver of the
message from which the file was removed.
Section End
<**/BLOCK_ALERT**>
Critical event
Used for critical firewall event alert emails.
Section Start
<**CRITICAL_EVENT**>
Allowed Tags
%%CRITICAL_EVENT
%%
The firewall critical event message
Section End
<**/CRITICAL_EVENT**>
Table 44: Alert email message sections