Antivirus Protection - Fortinet FortiGate FortiGate-5001 Administration Manual

Fortigate 5000 series
Hide thumbs Also See for FortiGate FortiGate-5001:
Table of Contents

Advertisement

About FortiGate Antivirus Firewalls

Antivirus protection

14
The FortiGate-5000 series
Antivirus Firewalls are
chassis-based systems that
broadband service providers
can use to provide subscriber
security services such as
firewall, VPN, antivirus
protection, spam filtering, web
filtering and intrusion prevention (IPS). The wide variety of system configurations
available with FortiGate-5000 series provides flexibility to meet the changing needs of
growing high performance networks. The FortiGate-5000 series chassis support
multiple hot-swappable FortiGate-5001 modules and power supplies.
Each FortiGate-5000 series system can support two or more FortiGate-5001 modules.
Each FortiGate-5001 module is a standalone high-performance antivirus firewall that
supports high-end features including 802.1Q VLANs and multiple virtual domains.
Two or more FortiGate-5001 modules also support stateful failover HA. Each
FortiGate-5001 module includes four Gigabit fibre interfaces, and four Gigabit
ethernet interfaces.
The FortiGate-5020 system, the first in the FortiGate-5000 series, scales from 1 to
2 FortiGate-5001 modules enabling customers to add incremental performance
and to operate the FortiGate-5020 in HA mode.
FortiGate ICSA-certified antivirus protection scans web (HTTP), file transfer (FTP),
and email (SMTP, POP3, and IMAP) content as it passes through the FortiGate unit.
FortiGate antivirus protection uses pattern matching and heuristics to find viruses. If a
virus is found, antivirus protection removes the file containing the virus from the
content stream and forwards a replacement message to the intended recipient.
For extra protection, you can configure antivirus protection to block specified file types
from passing through the FortiGate unit. You can use the feature to stop files that
might contain new viruses.
FortiGate antivirus protection can also identify and remove known grayware
programs. Grayware programs are usually unsolicited commercial software programs
that get installed on PCs, often without the user's consent or knowledge. Grayware
programs are generally considered an annoyance, but these programs can cause
system performance problems or be used for malicious means.
If the FortiGate unit contains a hard disk, infected or blocked files and grayware files
can be quarantined. The FortiGate administrator can download quarantined files so
that they can be virus scanned, cleaned, and forwarded to the intended recipient. You
can also configure the FortiGate unit to automatically delete quarantined files after a
specified time.
The FortiGate unit can send email alerts to system administrators when it detects and
removes a virus from a content stream. The web and email content can be in normal
network traffic or encrypted IPSec VPN traffic.
01-28008-0013-20050204
USB
1
2
3
4
5
CONSOLE
PWR ACC
USB
1
2
3
4
5
CONSOLE
PWR ACC
Introduction
PSU A
PSU B
6
7
8
STA IPM
6
7
8
STA IPM
Fortinet Inc.

Advertisement

Table of Contents
loading

Table of Contents