Fortinet FortiGate FortiGate-5001 Administration Manual page 238

Fortigate 5000 series
Hide thumbs Also See for FortiGate FortiGate-5001:
Table of Contents

Advertisement

Protection profile
238
Spam Action
Append to
Append with
Note: Some popular email clients cannot filter messages based on the MIME header. Check
your email client features before deciding how to tag spam.
Configuring IPS options
Figure 116:Protection profile IPS options
The following options are available for IPS through the protection profile. See
page 285
for more IPS configuration options.
IPS Signature
IPS Anomaly
Configuring content archive options
Figure 117:Protection profile content archive options
The following options are available for content archive through the protection profile.
Display content meta-
information on the system
dashboard
Archive content
meta-information
01-28008-0013-20050204
The action for the spam filter to take. Tagged allows you to append
a custom tag to the subject or header of email identified as spam.
For SMTP, if you have virus scan or splice (CLI) enabled, you will
only be able to discard spam email. (Note that splice is enabled
automatically when you enable virus scanning.) Discard
immediately drops the connection. Without splice or scanning
enabled, you can chose to tag or discard SMTP spam.
You can tag email by adding a custom word or phrase to the subject
or inserting a MIME header and value into the email header. You
can choose to log any spam action in the event log.
Choose to append the tag to the subject or MIME header of the
email identified as spam.
Enter a word or phrase (tag) to append to email identified as spam.
The maximum length is 63 characters.
Enable or disable signature based intrusion detection and
prevention for all protocols.
Enable or disable anomaly based intrusion detection and
prevention for all protocols.
Enable to have meta-information for each type of traffic display
in the Content Summary section of the FortiGate status page.
There you can view statistics for HTTP traffic, FTP traffic, and
Email traffic (IMAP, POP3, and SMTP combined).
Enable or disable archiving content meta-information to a
FortiLog unit for each protocol. Content meta-information can
include date and time, source and destination information,
request and response size, and scan result. Content archive is
only available if FortiLog is enabled under Log&Report > Log
Config > Log Settings.
Firewall
"IPS" on
Fortinet Inc.

Advertisement

Table of Contents
loading

Table of Contents