Antispam
Antispam
FortiGate Version 4.0 Administration Guide
496
01-400-89802-20090424
Order of SMTP and SMTPS spam filtering
SMTPS spam filtering is available on FortiGate units the support SSL content scanning
and inspection.
1
IP address BWL check on last hop IP.
2
DNSBL & ORDBL check on last hop IP, FortiGuard Antispam IP check on last hop IP,
HELO DNS lookup.
3
MIME headers check, E-mail address BWL check.
4
Banned word check on email subject.
5
IP address BWL check (for IPs extracted from “Received” headers).
6
Banned word check on email body.
7
Return email DNS check, FortiGuard Antispam email checksum check, FortiGuard
Antispam URL check, DNSBL & ORDBL check on public IP extracted from header.
Order of IMAP, POP3, IMAPS and POP3S spam filtering
IMAPS and POP3S spam filtering is available on FortiGate units the support SSL content
scanning and inspection.
1
MIME headers check, E-mail address BWL check.
2
Banned word check on email subject.
3
IP BWL check.
4
Banned word check on email body.
5
Return email DNS check, FortiGuard Antispam email checksum check, FortiGuard
Antispam URL check, DNSBL & ORDBL check.
Anti-spam filter controls
Spam filters are configured for system-wide use, but enabled on a per profile basis.
Table 52
describes the Antispam settings and where to configure and access them.
To access protection profile Antispam options, go to
Firewall > Protection Profile
, select
the
Edit
icon beside an existing profile, or select
Create New
. Select
Spam Filtering
.
Table 52: AntiSpam and Protection Profile spam filtering configuration
Protection Profile spam filtering options
AntiSpam setting
IP address FortiGuard Antispam check
System > Maintenance > FortiGuard
Configure the FortiGuard Antispam service.
Fortinet has its own DNSBL server for
FortiGuard Antispam that provides spam IP
address and URL blacklists. Fortinet keeps
the FortiGuard Antispam IP and URLs up-to-
date as new spam sources are found.
Enable FortiGuard Antispam, check the status of
the FortiGuard Antispam server, view the license
type and expiry date, and configure the cache. For
more information, see
unit for FDN and FortiGuard subscription services”
on page 266
IP address BWL check
UTM > AntiSpam > IP Address
Black/white list check. Configure the
checking of incoming IP addresses against
the configured spam filter IP address list.
Add to and edit IP addresses to the list. You can
configure the action to take as spam, clear, or reject
for each IP address. You can place an IP address
anywhere in the list. The filter checks each IP
address in sequence.
DNSBL & ORDBL check
Command line only
Summary of Contents for Gate 60D
Page 705: ...www fortinet com...
Page 706: ...www fortinet com...