InstallationsanweisungenInhaltsverzeichnisContents3Introduction7Register your FortiGate unit7About the FortiGate-200A8About this document8Document conventions8Typographic conventions9Further Reading9Fortinet Knowledge Center10Comments on Fortinet technical documentation10Customer service and technical support10Installing11Environmental specifications11Cautions and warnings12Grounding12Rack mount instructions12Mounting12Plugging in the FortiGate14Connecting to the network14Turning off the FortiGate unit15Configuring17NAT vs. Transparent mode17NAT mode17Transparent mode18Connecting to the FortiGate unit18Connecting to the web-based manager18Connecting to the CLI19Configuring NAT mode20Using the web-based manager20Configure the interfaces20Configure a DNS server21Adding a default route and gateway21Adding firewall policies22Using the CLI23Configure the interfaces23Configure a DNS server24Adding a default route and gateway24Adding firewall policies25Configuring Transparent mode26Using the web-based manager26Switching to Transparent mode26Configure a DNS server26Adding firewall policies26Using the CLI27Switching to Transparent mode27Configure a DNS server28Adding firewall policies28Verify the configuration29Backing up the configuration29Restoring a configuration30Additional configuration30Set the time and date30Set the Administrator password30Configure FortiGuard31Updating antivirus and IPS signatures31Advanced configuration33Protection profiles33Firewall policies34Configuring firewall policies35Antivirus options35AntiSpam options36Web filtering37Logging38FortiGate Firmware39Downloading firmware39Using the web-based manager39Upgrading the firmware39Reverting to a previous version40Backup and Restore from a USB key41Using the USB Auto-Install41Using the CLI42Reverting to a previous version43Installing firmware from a system reboot using the CLI44Restoring the previous configuration46Backup and Restore from a USB key46Using the USB Auto-Install46Additional CLI Commands for a USB key47Testing new firmware before installing47Index51Größe: 1,56 MBSeiten: 56Language: EnglishHandbuch öffnen
InstallationsanweisungenInhaltsverzeichnisContents3Introduction7About the FortiGate units7FortiGate-200A7FortiGate-300A7FortiGate-400A8FortiGate-500A8Register your FortiGate unit8Fortinet Family Products8FortiGuard Subscription Services8FortiClient9FortiMail9FortiAnalyzer9FortiReporter10FortiBridge10FortiManager10About this document10Document conventions10Typographic conventions11Fortinet documentation11Fortinet documentation CDs12Fortinet Knowledge Center12Comments on Fortinet technical documentation13Customer service and technical support13Installing the FortiGate unit15Package Contents15FortiGate-200A15Mounting16FortiGate-300A16Mounting17FortiGate-400A17Mounting18FortiGate-500A18Mounting19Air Flow19Mechanical Loading19Powering on the FortiGate unit19Powering off the FortiGate unit20Connecting to the FortiGate unit21Web-based manager21Front control buttons and LCD21Command line interface21Connecting to the web-based manager21System Dashboard23Command line interface23Connecting to the CLI23LCD front control buttons24Using the front control buttons and LCD25Factory defaults27Factory default NAT/Route mode network configuration27Factory default Transparent mode network configuration28Factory default firewall configuration29Factory default protection profiles29Restoring the default settings30Restoring the default settings using the web-based manager30Restoring the default settings using the CLI30Configuring the FortiGate unit31Planning the FortiGate configuration31NAT/Route mode31NAT/Route mode with multiple external network connections32Transparent mode33Preventing the public FortiGate interface from responding to ping requests33NAT/Route mode installation34Preparing to configure the FortiGate unit in NAT/Route mode34DHCP or PPPoE configuration35Using the web-based manager35Configuring basic settings35Adding a default route36Verifying the web-based manager configuration37Verify the connection37Using the front control buttons and LCD37Adding a default gateway using the front control buttons and LCD38Verifying the front control buttons and LCD38Verify the connection38Using the command line interface38Configuring the FortiGate unit to operate in NAT/Route mode38Adding a default route40Verify the connection40Connecting the FortiGate unit to the network(s)41Configuring the networks41Transparent mode installation42Preparing to configure Transparent mode42Using the web-based manager43Using the front control buttons and LCD43Adding a default gateway using the front control buttons and LCD44Verifying the front control buttons and LCD44Verify the connection44Using the command line interface44Reconnecting to the web-based manager45Connecting the FortiGate unit to your network46Verify the connection46Next Steps46Set the date and time47Updating antivirus and IPS signatures47Updating antivirus and IPS signatures from the web-based manager48Updating the IPS signatures from the CLI48Scheduling antivirus and IPS updates49Adding an override server49FortiGate Firmware51Upgrading to a new firmware version51Upgrading the firmware using the web-based manager51Upgrading the firmware using the CLI52Reverting to a previous firmware version53Reverting to a previous firmware version using the web-based manager53Reverting to a previous firmware version using the CLI54Installing firmware images from a system reboot using the CLI56Restoring the previous configuration58The FortiUSB key58Backup and Restore from the FortiUSB key59Using the USB Auto-Install feature59Additional CLI Commands for the FortiUSB key60Testing a new firmware image before installing it61Index65Größe: 1,77 MBSeiten: 68Language: EnglishHandbuch öffnen
BetriebsanweisungInhaltsverzeichnisTable of Contents3Introduction13About FortiGate Antivirus Firewalls13Antivirus protection14Web content filtering14Spam filtering15Firewall15NAT/Route mode16Transparent mode16VLANs and virtual domains17Intrusion Prevention System (IPS)17VPN17High availability18Secure installation, configuration, and management19Web-based manager19Command line interface19Logging and reporting20Document conventions20FortiGate documentation22Comments on Fortinet technical documentation22Related documentation22FortiManager documentation23FortiClient documentation23FortiMail documentation23FortiLog documentation23Customer service and technical support24System status25Console access25Status26Viewing system status26System status27Unit Information27Recent Virus Detections27Interface Status27System Resources28History28Recent Intrusion Detections29Changing unit information29Session list31Changing the FortiGate firmware32Upgrading to a new firmware version33Upgrading the firmware using the web-based manager33Upgrading the firmware using the CLI34Reverting to a previous firmware version35Reverting to a previous firmware version using the web-based manager35Reverting to a previous firmware version using the CLI36Installing firmware images from a system reboot using the CLI37Restoring the previous configuration40Testing a new firmware image before installing it40Installing and using a backup firmware image42Installing a backup firmware image43Switching to the backup firmware image44Switching back to the default firmware image45System network47Interface47Interface settings48Name49Interface49VLAN ID49Virtual Domain50Addressing mode50Manual50DHCP50PPPoE51DDNS52Ping server52Administrative access52MTU53Log53Configuring interfaces53Zone57Zone settings58Management59DNS60Routing table (Transparent Mode)61Routing table list61Transparent mode route settings62VLAN overview62FortiGate units and VLANs63VLANs in NAT/Route mode63Rules for VLAN IDs64Rules for VLAN IP addresses64Adding VLAN subinterfaces65VLANs in Transparent mode66Rules for VLAN IDs68Transparent mode virtual domains and VLANs68Transparent mode VLAN list69Transparent mode VLAN settings69FortiGate IPv6 support71System DHCP73Service73DHCP service settings74Server75DHCP server settings76Exclude range77DHCP exclude range settings78IP/MAC binding78DHCP IP/MAC binding settings79Dynamic IP79System config81System time81Options82HA84HA configuration85Standalone Mode86High Availability86Cluster Members86Mode86Group ID87Unit Priority87Override Master88Password88Schedule88Priorities of Heartbeat Device89Heartbeat device IP addresses90Monitor priorities90Configuring an HA cluster91Managing an HA cluster95SNMP98Configuring SNMP98SNMP community99FortiGate MIBs102FortiGate traps102Fortinet MIB fields104Replacement messages106Replacement messages list107Changing replacement messages108FortiManager109System administration111Administrators111Administrators list112Administrators options112Using trusted hosts113Access profiles113Access profile list114Access profile options114System maintenance117Backup and restore117Backing up and Restoring118Update center120Updating antivirus and attack definitions122Enabling push updates125Push updates when FortiGate IP addresses change125Enabling push updates through a NAT device126Support127Sending a bug report128Registering a FortiGate unit129Shutdown131System virtual domain133Virtual domain properties134Exclusive virtual domain properties134Shared configuration settings135Administration and management136Virtual domains136Adding a virtual domain137Selecting a virtual domain137Selecting a management virtual domain137Configuring virtual domains138Adding interfaces, VLAN subinterfaces, and zones to a virtual domain138Configuring routing for a virtual domain140Configuring firewall policies for a virtual domain140Configuring IPSec VPN for a virtual domain142Router143Static143Static route list145Static route options146Policy147Policy route list147Policy route options148RIP148General149Networks list150Networks options151Interface list151Interface options152Distribute list153Distribute list options154Offset list155Offset list options155Router objects156Access list156New access list156New access list entry157Prefix list157New Prefix list158New prefix list entry159Route-map list159New Route-map160Route-map list entry161Key chain list162New key chain162Key chain list entry163Monitor164Routing monitor list164CLI configuration165get router info ospf165Command syntax165Examples165get router info protocols165Command syntax165get router info rip166Command syntax166Examples166config router ospf166Command syntax pattern166Example168config area169config area command syntax pattern169Example171config filter-list172config filter-list command syntax pattern172Example173config range173config range command syntax pattern173Example174config virtual-link175config virtual link command syntax pattern175Example177config distribute-list177config distribute-list command syntax pattern178Example178config neighbor179config neighbor command syntax pattern179Example180config network181config network command syntax pattern181Example181config ospf-interface182config ospf-interface command syntax pattern182Example186config redistribute186config redistribute command syntax pattern187Example187config summary-address187config summary-address command syntax pattern188Example188config router static6189Command syntax pattern189Example190Firewall191Policy192How policy matching works192Policy list192Policy options193Advanced policy options196Authentication196Traffic Shaping197Differentiated Services197Comments198Configuring firewall policies198Policy CLI configuration199Command syntax pattern199Address200Address list201Address options201Configuring addresses202Address group list203Address group options203Configuring address groups204Service204Predefined service list205Custom service list208Custom service options208TCP and UDP custom service options209ICMP custom service options209IP custom service options209Configuring custom services210Service group list211Service group options211Configuring service groups212Schedule212One-time schedule list213One-time schedule options213Configuring one-time schedules214Recurring schedule list214Recurring schedule options215Configuring recurring schedules215Virtual IP216Virtual IP list217Virtual IP options217Configuring virtual IPs218IP pool221IP pool list221IP pool options222Configuring IP pools222IP Pools for firewall policies that use fixed ports223IP pools and dynamic NAT223Protection profile223Protection profile list224Default protection profiles224Protection profile options225Configuring antivirus options225Configuring web filtering options226Configuring web category filtering options227Configuring spam filtering options228Configuring IPS options229Configuring content archive options229Configuring protection profiles229CLI configuration230profile231Command syntax pattern231Users and authentication235Setting authentication timeout236Local236Local user list236Local user options236RADIUS237RADIUS server list237RADIUS server options238LDAP238LDAP server list239LDAP server options239User group241User group list241User group options242CLI configuration243peer243Command syntax pattern243Example243peergrp244Command syntax pattern244Example244VPN247Phase 1248Phase 1 list248Phase 1 basic settings249Phase 1 advanced options250Configuring XAuth251Phase 2252Phase 2 list252Phase 2 basic settings253Phase 2 advanced options254Manual key255Manual key list256Manual key options256Concentrator257Concentrator list257Concentrator options258Ping Generator258Ping generator options259Monitor259Dialup monitor260Static IP and dynamic DNS monitor260PPTP261Setting up a PPTP-based VPN261Enabling PPTP and specifying a PPTP range262Configuring a Windows 2000 client for PPTP263Configuring a Windows XP client for PPTP263PPTP passthrough264L2TP265Setting up a L2TP-based VPN266Enabling L2TP and specifying an L2TP range266Configuring a Windows 2000 client for L2TP267Configuring a Windows XP client for L2TP268Certificates270Viewing the certificate list271Generating a certificate request271Installing a signed certificate273Enabling VPN access for specific certificate holders274CLI configuration275ipsec phase1275Command syntax pattern275Example277ipsec phase2277Command syntax pattern277Example278ipsec vip278Command syntax pattern278Example279Authenticating peers with preshared keys280Gateway-to-gateway VPN280Dialup VPN281Dynamic DNS VPN281Manual key IPSec VPN282Adding firewall policies for IPSec VPN tunnels282Setting the encryption policy direction282Setting the source address for encrypted traffic282Setting the destination address for encrypted traffic283Adding an IPSec firewall encryption policy283Internet browsing through a VPN tunnel283Configuring Internet browsing through a VPN tunnel284IPSec VPN in Transparent mode285Special rules285Hub and spoke VPNs286Configuring the hub286Adding a VPN concentrator287Configuring spokes288Redundant IPSec VPNs289Configuring redundant IPSec VPNs289Configuring IPSec virtual IP addresses290Troubleshooting292IPS293Protection profile configuration293IPS updates and information293Signature294Predefined294Predefined signature list295Configuring predefined signatures296Configuring parameters for dissector signatures297Custom298Custom signature list298Adding custom signatures299Backing up and restoring custom signature files299Anomaly300Anomaly list300Configuring an anomaly301Anomaly CLI configuration303(config ips anomaly) config limit303Command syntax pattern303Example303Configuring IPS logging and alert email304Default fail open setting304Antivirus305Protection profile configuration306Order of antivirus operations306Virus list updates and information306File block306File block list307Configuring the file block list308Quarantine308Quarantined files list308Quarantined files list options309AutoSubmit list310AutoSubmit list options310Configuring the AutoSubmit list310Config311Config312Virus list312Config312Grayware313Grayware options313CLI configuration314heuristic314Command syntax pattern315Example315quarantine315Command syntax pattern316antivirus quarantine command keywords and variables316service http316Command syntax pattern316Example317service ftp317Command syntax pattern317Example318service pop3318Command syntax pattern318Example319service imap319Command syntax pattern319Example320service smtp320Command syntax pattern320Example321Web filter323Protection profile configuration324Order of web filter operations324Content block324Web content block list325Web content block options325Configuring the web content block list326URL block326Web URL block list327Web URL block options327Configuring the web URL block list327Web pattern block list328Web pattern block options329Configuring web pattern block329URL exempt329URL exempt list330URL exempt list options330Configuring URL exempt330Category block331FortiGuard managed web filtering service331FortiGuard categories and ratings331FortiGuard Service Points331FortiGuard licensing332FortiGuard configuration332Category block configuration options332Configuring web category block333Category block reports333Category block reports options334Generating a category block report334Category block CLI configuration334Command syntax pattern335Example335Script filter335Web script filter options336Spam filter337Protection profile configuration338Order of spam filter operations339FortiShield IP address black list and spam filter339IP address340IP address list340IP address options340Configuring the IP address list340RBL & ORDBL341RBL & ORDBL list342RBL & ORDBL options342Configuring the RBL & ORDBL list342Email address343Email address list343Email address options343Configuring the email address list343MIME headers344MIME headers list345MIME headers options345Configuring the MIME headers list345Banned word346Banned word list346Banned word options347Configuring the banned word list348Using Perl regular expressions348Regular expression vs. wildcard match pattern348Word boundary349Case sensitivity349Examples350Log & Report351Log config352Log Setting options352FortiLog settings353Disk settings354Memory settings355Syslog settings355WebTrends settings355Alert E-mail options356Log filter options357Traffic log358Event log358Anti-virus log359Web filter log359Attack log360Spam filter log360Configuring log filters360Enabling traffic logging360Log access361Disk log file access361Viewing log messages363Choosing columns364Searching log messages365CLI configuration366fortilog setting366Command syntax pattern366Example367syslogd setting367Command syntax pattern367Example369FortiGuard categories371FortiGate maximum values377Glossary381Index385Größe: 4,77 MBSeiten: 392Language: EnglishHandbuch öffnen
BetriebsanweisungInhaltsverzeichnisTable of Contents3Introduction13About FortiGate Antivirus Firewalls13Antivirus protection14Web content filtering14Spam filtering15Firewall15NAT/Route mode16Transparent mode16VLANs and virtual domains16Intrusion Prevention System (IPS)17VPN17High availability18Secure installation, configuration, and management18Web-based manager18Command line interface18Logging and reporting19Document conventions19FortiGate documentation21Comments on Fortinet technical documentation21Related documentation21FortiManager documentation22FortiClient documentation22FortiMail documentation22FortiLog documentation22Customer service and technical support23System status25Console access25Status26Viewing system status26System status26Unit Information27Recent Virus Detections27Interface Status27System Resources27History28Recent Intrusion Detections28Changing unit information29Session list31Changing the FortiGate firmware32Upgrading to a new firmware version33Upgrading the firmware using the web-based manager33Upgrading the firmware using the CLI33Reverting to a previous firmware version34Reverting to a previous firmware version using the web-based manager34Reverting to a previous firmware version using the CLI35Installing firmware images from a system reboot using the CLI37Restoring the previous configuration39Testing a new firmware image before installing it40Installing and using a backup firmware image42Installing a backup firmware image42Switching to the backup firmware image44Switching back to the default firmware image44System network47Interface47Interface settings48Name49Interface49VLAN ID49Virtual Domain50Addressing mode50Manual50DHCP50PPPoE51DDNS52Ping server52Administrative access52MTU53Log53Configuring interfaces53Zone57Zone settings58Management59DNS60Routing table (Transparent Mode)61Routing table list61Transparent mode route settings62VLAN overview62FortiGate units and VLANs63VLANs in NAT/Route mode63Rules for VLAN IDs64Rules for VLAN IP addresses64Adding VLAN subinterfaces65VLANs in Transparent mode66Rules for VLAN IDs68Transparent mode virtual domains and VLANs68Transparent mode VLAN list69Transparent mode VLAN settings69FortiGate IPv6 support71System DHCP73Service73DHCP service settings74Server75DHCP server settings76Exclude range77DHCP exclude range settings78IP/MAC binding78DHCP IP/MAC binding settings79Dynamic IP79System config81System time81Options82HA84HA configuration85Standalone Mode86High Availability86Cluster Members86Mode86Group ID86Unit Priority87Override Master87Password88Schedule88Priorities of Heartbeat Device89Heartbeat device IP addresses90Monitor priorities90Configuring an HA cluster91Managing an HA cluster95SNMP98Configuring SNMP98SNMP community99FortiGate MIBs102FortiGate traps102Fortinet MIB fields104Replacement messages106Replacement messages list107Changing replacement messages108FortiManager109System administration111Administrators111Administrators list112Administrators options112Using trusted hosts113Access profiles113Access profile list114Access profile options114System maintenance117Backup and restore117Backing up and Restoring118Update center120Updating antivirus and attack definitions122Enabling push updates125Push updates when FortiGate IP addresses change125Enabling push updates through a NAT device126Support127Sending a bug report128Registering a FortiGate unit129Shutdown131System virtual domain133Virtual domain properties134Exclusive virtual domain properties134Shared configuration settings135Administration and management136Virtual domains136Adding a virtual domain137Selecting a virtual domain137Selecting a management virtual domain137Configuring virtual domains138Adding interfaces, VLAN subinterfaces, and zones to a virtual domain138Configuring routing for a virtual domain140Configuring firewall policies for a virtual domain140Configuring IPSec VPN for a virtual domain142Router143Static143Static route list145Static route options146Policy147Policy route list147Policy route options148RIP148General149Networks list150Networks options151Interface list151Interface options152Distribute list153Distribute list options154Offset list155Offset list options155Router objects156Access list156New access list156New access list entry157Prefix list157New Prefix list158New prefix list entry159Route-map list159New Route-map160Route-map list entry161Key chain list162New key chain162Key chain list entry163Monitor164Routing monitor list164CLI configuration165get router info ospf165Command syntax165Examples165get router info protocols165Command syntax165get router info rip166Command syntax166Examples166config router ospf166Command syntax pattern166Example168config area169config area command syntax pattern169Example171config filter-list172config filter-list command syntax pattern172Example173config range173config range command syntax pattern173Example174config virtual-link175config virtual link command syntax pattern175Example177config distribute-list177config distribute-list command syntax pattern178Example178config neighbor179config neighbor command syntax pattern179Example180config network181config network command syntax pattern181Example181config ospf-interface182config ospf-interface command syntax pattern182Example186config redistribute186config redistribute command syntax pattern187Example187config summary-address187config summary-address command syntax pattern188Example188config router static6189Command syntax pattern189Example190Firewall191Policy192How policy matching works192Policy list192Policy options193Advanced policy options196Authentication196Traffic Shaping197Differentiated Services197Comments198Configuring firewall policies198Policy CLI configuration199Command syntax pattern199Address200Address list201Address options201Configuring addresses202Address group list203Address group options203Configuring address groups204Service204Predefined service list205Custom service list208Custom service options208TCP and UDP custom service options209ICMP custom service options209IP custom service options209Configuring custom services210Service group list211Service group options211Configuring service groups212Schedule212One-time schedule list213One-time schedule options213Configuring one-time schedules214Recurring schedule list214Recurring schedule options215Configuring recurring schedules215Virtual IP216Virtual IP list217Virtual IP options217Configuring virtual IPs218IP pool220IP pool list221IP pool options221Configuring IP pools222IP Pools for firewall policies that use fixed ports222IP pools and dynamic NAT223Protection profile223Protection profile list224Default protection profiles224Protection profile options225Configuring antivirus options225Configuring web filtering options226Configuring web category filtering options227Configuring spam filtering options228Configuring IPS options229Configuring content archive options229Configuring protection profiles229CLI configuration230profile231Command syntax pattern231Users and authentication235Setting authentication timeout236Local236Local user list236Local user options236RADIUS237RADIUS server list237RADIUS server options238LDAP238LDAP server list239LDAP server options239User group241User group list241User group options242CLI configuration243peer243Command syntax pattern243Example243peergrp244Command syntax pattern244Example244VPN247Phase 1248Phase 1 list248Phase 1 basic settings249Phase 1 advanced options250Configuring XAuth251Phase 2252Phase 2 list252Phase 2 basic settings253Phase 2 advanced options254Manual key255Manual key list256Manual key options256Concentrator257Concentrator list257Concentrator options258Ping Generator258Ping generator options259Monitor259Dialup monitor260Static IP and dynamic DNS monitor260PPTP261Setting up a PPTP-based VPN261Enabling PPTP and specifying a PPTP range262Configuring a Windows 2000 client for PPTP263Configuring a Windows XP client for PPTP263PPTP passthrough264L2TP265Setting up a L2TP-based VPN266Enabling L2TP and specifying an L2TP range266Configuring a Windows 2000 client for L2TP267Configuring a Windows XP client for L2TP268Certificates270Viewing the certificate list271Generating a certificate request271Installing a signed certificate273Enabling VPN access for specific certificate holders274CLI configuration275ipsec phase1275Command syntax pattern275Example277ipsec phase2277Command syntax pattern277Example278ipsec vip278Command syntax pattern278Example279Authenticating peers with preshared keys280Gateway-to-gateway VPN280Dialup VPN281Dynamic DNS VPN281Manual key IPSec VPN282Adding firewall policies for IPSec VPN tunnels282Setting the encryption policy direction282Setting the source address for encrypted traffic282Setting the destination address for encrypted traffic283Adding an IPSec firewall encryption policy283Internet browsing through a VPN tunnel283Configuring Internet browsing through a VPN tunnel284IPSec VPN in Transparent mode285Special rules285Hub and spoke VPNs286Configuring the hub286Adding a VPN concentrator287Configuring spokes288Redundant IPSec VPNs289Configuring redundant IPSec VPNs289Configuring IPSec virtual IP addresses290Troubleshooting292IPS293Protection profile configuration293IPS updates and information293Signature294Predefined294Predefined signature list295Configuring predefined signatures296Configuring parameters for dissector signatures297Custom298Custom signature list298Adding custom signatures299Backing up and restoring custom signature files299Anomaly300Anomaly list300Configuring an anomaly301Anomaly CLI configuration303(config ips anomaly) config limit303Command syntax pattern303Example303Configuring IPS logging and alert email304Default fail open setting304Antivirus305Protection profile configuration306Order of antivirus operations306Virus list updates and information306File block306File block list307Configuring the file block list308Quarantine308Quarantined files list308Quarantined files list options309AutoSubmit list310AutoSubmit list options310Configuring the AutoSubmit list310Config311Config312Virus list312Config312Grayware313Grayware options313CLI configuration314heuristic314Command syntax pattern315Example315quarantine315Command syntax pattern316antivirus quarantine command keywords and variables316service http316Command syntax pattern316Example317service ftp317Command syntax pattern317Example318service pop3318Command syntax pattern318Example319service imap319Command syntax pattern319Example320service smtp320Command syntax pattern320Example321Web filter323Protection profile configuration324Order of web filter operations324Content block324Web content block list325Web content block options325Configuring the web content block list326URL block326Web URL block list327Web URL block options327Configuring the web URL block list327Web pattern block list328Web pattern block options329Configuring web pattern block329URL exempt329URL exempt list330URL exempt list options330Configuring URL exempt330Category block331FortiGuard managed web filtering service331FortiGuard categories and ratings331FortiGuard Service Points331FortiGuard licensing332FortiGuard configuration332Category block configuration options332Configuring web category block333Category block reports333Category block reports options334Generating a category block report334Category block CLI configuration334Command syntax pattern335Example335Script filter335Web script filter options336Spam filter337Protection profile configuration338Order of spam filter operations339FortiShield IP address black list and spam filter339IP address340IP address list340IP address options340Configuring the IP address list340RBL & ORDBL341RBL & ORDBL list342RBL & ORDBL options342Configuring the RBL & ORDBL list342Email address343Email address list343Email address options343Configuring the email address list343MIME headers344MIME headers list345MIME headers options345Configuring the MIME headers list345Banned word346Banned word list346Banned word options347Configuring the banned word list348Using Perl regular expressions348Regular expression vs. wildcard match pattern348Word boundary349Case sensitivity349Examples350Log & Report351Log config352Log Setting options352FortiLog settings353Disk settings354Memory settings355Syslog settings355WebTrends settings355Alert E-mail options356Log filter options357Traffic log358Event log358Anti-virus log359Web filter log359Attack log360Spam filter log360Configuring log filters360Enabling traffic logging360Log access361Disk log file access361Viewing log messages363Choosing columns364Searching log messages365CLI configuration366fortilog setting366Command syntax pattern366Example367syslogd setting367Command syntax pattern367Example369FortiGuard categories371FortiGate maximum values377Glossary381Index385Größe: 4,74 MBSeiten: 392Language: EnglishHandbuch öffnen