14
01-28008-0013-20050204
Fortinet Inc.
About FortiGate Antivirus Firewalls
Introduction
The FortiGate-5000 series
Antivirus Firewalls are
chassis-based systems that
broadband service providers
can use to provide subscriber
security services such as
firewall, VPN, antivirus
protection, spam filtering, web
filtering and intrusion prevention (IPS). The wide variety of system configurations
available with FortiGate-5000 series provides flexibility to meet the changing needs of
growing high performance networks. The FortiGate-5000 series chassis support
multiple hot-swappable FortiGate-5001 modules and power supplies.
Each FortiGate-5000 series system can support two or more FortiGate-5001 modules.
Each FortiGate-5001 module is a standalone high-performance antivirus firewall that
supports high-end features including 802.1Q VLANs and multiple virtual domains.
Two or more FortiGate-5001 modules also support stateful failover HA. Each
FortiGate-5001 module includes four Gigabit fibre interfaces, and four Gigabit
ethernet interfaces.
• The FortiGate-5020 system, the first in the FortiGate-5000 series, scales from 1 to
2 FortiGate-5001 modules enabling customers to add incremental performance
and to operate the FortiGate-5020 in HA mode.
Antivirus protection
FortiGate ICSA-certified antivirus protection scans web (HTTP), file transfer (FTP),
and email (SMTP, POP3, and IMAP) content as it passes through the FortiGate unit.
FortiGate antivirus protection uses pattern matching and heuristics to find viruses. If a
virus is found, antivirus protection removes the file containing the virus from the
content stream and forwards a replacement message to the intended recipient.
For extra protection, you can configure antivirus protection to block specified file types
from passing through the FortiGate unit. You can use the feature to stop files that
might contain new viruses.
FortiGate antivirus protection can also identify and remove known grayware
programs. Grayware programs are usually unsolicited commercial software programs
that get installed on PCs, often without the user’s consent or knowledge. Grayware
programs are generally considered an annoyance, but these programs can cause
system performance problems or be used for malicious means.
If the FortiGate unit contains a hard disk, infected or blocked files and grayware files
can be quarantined. The FortiGate administrator can download quarantined files so
that they can be virus scanned, cleaned, and forwarded to the intended recipient. You
can also configure the FortiGate unit to automatically delete quarantined files after a
specified time.
The FortiGate unit can send email alerts to system administrators when it detects and
removes a virus from a content stream. The web and email content can be in normal
network traffic or encrypted IPSec VPN traffic.
PSU A
PSU B
PWR ACC
STA IPM
CONSOLE
USB
1
2
3
4
5
6
7
8
PWR ACC
STA IPM
CONSOLE
USB
1
2
3
4
5
6
7
8
Содержание FortiGate FortiGate-5020
Страница 86: ...86 01 28008 0013 20050204 Fortinet Inc Dynamic IP System DHCP ...
Страница 118: ...118 01 28008 0013 20050204 Fortinet Inc FortiManager System Config ...
Страница 254: ...254 01 28008 0013 20050204 Fortinet Inc CLI configuration User ...
Страница 318: ...318 01 28008 0013 20050204 Fortinet Inc CLI configuration Antivirus ...
Страница 350: ...350 01 28008 0013 20050204 Fortinet Inc Using Perl regular expressions Spam filter ...
Страница 370: ...370 01 28008 0013 20050204 Fortinet Inc CLI configuration Log Report ...
Страница 382: ...382 01 28008 0013 20050204 Fortinet Inc Glossary ...
Страница 402: ...402 01 28008 0013 20050204 Fortinet Inc Index ...