Fortinet FortiGate FortiGate-1000 Administration Manual page 232

Fortinet fortigate fortigate-1000: user guide
Hide thumbs Also See for FortiGate FortiGate-1000:
Table of Contents

Advertisement

Protection profile
232
firewall profile command keywords and variables
Keywords and
variables
ftp
{block
content_log
oversize
quarantine scan
splice}
01-28006-0009-20041105
Description
Select the actions that this profile will
use for filtering FTP traffic for a policy.
Entering splice enables the
FortiGate unit to simultaneously buffer
a file for scanning and upload the file
to an FTP server. If a virus is detected,
the FortiGate unit stops the upload and
attempts to delete the partially
uploaded file from the FTP server. To
delete the file successfully, the server
permissions must be set to allow
deletes. When downloading files from
an FTP server the FortiGate unit sends
1 byte every 30 seconds to prevent the
client from timing out during scanning
and download. If a virus is detected,
the FortiGate unit stops the download.
The user must then delete the partially
downloaded file. There should not be
enough content in the file to cause any
harm. Enabling splice reduces
timeouts when uploading and
downloading large files. When splice is
disabled for ftp, the FortiGate unit
buffers the file for scanning before
uploading it to the FTP server. If the
file is clean, the FortiGate unit will
allow the upload to continue.
Enter all the actions you want this
profile to use. Use a space to separate
the options you enter. If you want to
remove an option from the list or add
an option to the list, you must retype
the list with the option removed or
added.
Firewall
Default
Availability
No default. All models.
Fortinet Inc.

Advertisement

Table of Contents
loading

Table of Contents