410
The virusscanning option relies on an actual virusscanner.
The virusscanner licenses are not included with SX-GATE
and must be purchased separately. Further information about
supported or already installed scanners can be found in the
menu "Modules > Virusscanner". This is also where you would
install a virusscanner engine or its license key.
14.7.3-A
General
Verify content type
Web server responses usually declare the file type in the HTTP header. Misconfigured
or malicious web servers provide generic or false content types.
By using this setting SX-GATE tries to find the real file type by looking at the first bytes
of each transferred file.
Activating this option may increase the number of files to scan
for viruses dramatically and thus the system's load!
Bypass on port 8081
With virusscan enabled, actually two chained proxies run on SX-GATE. The
virusscanning proxy accepts connections on TCP port 8080 and forwards them to
the proxy cache on port 8081. By default direct connections to port 8081 will not be
accepted. Enable this option and configure a client to use proxy port 8081 to always
bypass virusscanning and tagfiltering.
This option should only be enabled for compatibility with older
SX-GATE releases. If some applications do not cooperate with
the virusscan proxy, you should add appropriate entries at
"Trusted servers (incl. subdomains)".
Trusted servers (incl. subdomains)
Content filtering can affect the functionality of certain web sites. In this table you can
disable the content filter for individual domains completely or, by setting individual
checkboxes, enable only some subcomponents of the filter. Entries always include all
subdomains. More specific entries like e.g. "www.example.com" have precedence over
more general entries like e.g. "example.com".