Fortinet fortigate-100a Betriebsanweisung

Seite von 388
222
01-28006-0068-20041105
Fortinet Inc.
Protection profile list
Firewall
Protection profile list
Figure 104:Sample list showing the default protection profiles
The IP pool list has the following icons and features.
Default protection profiles
The FortiGate unit comes preconfigured with four protection profiles.
Protection profile options
Figure 105:Adding a protection profile
Create New
Select Create New to add an IP pool.
Name
The start IP defines the start of an address range.
The Delete and Edit/View icons.
Note: A protection profile cannot be deleted (and the Delete icon is not visible) if it is selected in 
a firewall policy or included in a user group. 
Strict
To apply maximum protection to HTTP, FTP, IMAP, POP3, and SMTP traffic. 
You may not wish to use the strict protection profile under normal 
circumstances but it is available if you have extreme problems with viruses 
and require maximum screening. 
Web
To apply virus scanning and web content blocking to HTTP traffic. You can 
add this protection profile to firewall policies that control HTTP traffic.
Unfiltered
To apply no scanning, blocking or IPS. Use the unfiltered content profile if 
you do not want to apply content protection to content traffic. You can add 
this protection profile to firewall policies for connections between highly 
trusted or highly secure networks where content does not need to be 
protected.