SonicWALL 3500 Benutzerhandbuch

Seite von 74
SonicWALL NSA 5000/4500/3500 Getting Started Guide  
Page 45
3.
The Enable Outbound Inspection feature is available for 
SMTP traffic, such as for a mail server that might be hosted 
on the DMZ. Enabling outbound inspection for SMTP scans 
mail that is delivered to the internally hosted SMTP server 
for viruses.
4.
For each protocol you can restrict the transfer of files with 
specific attributes by clicking on the Settings button under 
the protocol. In the Settings dialog box, you can configure 
the following:
Restrict Transfer of password-protected Zip files 
Disables the transfer of password protected ZIP files 
over any enabled protocol. This option only functions 
on protocols that are enabled for inspection. 
Restrict Transfer of MS-Office type files containing 
macros (VBA 5 and above) 
- Disables the transfers of 
any MS Office 97 and above files that contain VBA 
macros. 
Restrict Transfer of packed executable files (UPX, 
FSG, etc.) 
- Disables the transfer of packed 
executable files. Packers are utilities that compress 
and sometimes encrypt executables. Although there 
are legitimate applications for these, they may be used 
with the intent of obfuscation, and this makes the 
executables less detectable by anti-virus applications. 
The packer adds a header that expands the file in 
memory, and then executes that file. SonicWALL 
Gateway Anti-Virus currently recognizes the most 
common packed formats: UPX, FSG, PKLite32, Petite, 
and ASPack.  
5.
Click Configure Gateway AV Settings. The Gateway AV 
Settings window allows you to configure clientless 
notification alerts and create a SonicWALL GAV exclusion 
list. 
6.
In the Gateway AV Config View window, to suppress the 
sending of email messages (SMTP) to clients from 
SonicWALL GAV when a virus is detected in an email or 
attachment, check the Disable SMTP Responses box.