Chapter 20 Anti-Virus
ZyWALL (ZLD) CLI Reference Guide
180
20.2.2.1 Zone to Zone Anti-virus Rule Example
This example shows how to configure (and display) a WAN to LAN antivirus rule to scan
HTTP traffic and destroy infected files. The white and black lists are ignored and zipped files
are decompressed. Any zipped files that cannot be decompressed are destroyed.
20.2.3 White and Black Lists
The following table describes the commands for configuring the white list and black list. You
must use the
configure terminal
command to enter the configuration mode before you
can use these commands.
Router(config)# anti-virus rule 1
Router(config-av-rule-1)# activate
Router(config-av-rule-1)# from-zone WAN
Router(config-av-rule-1)# to-zone LAN
Router(config-av-rule-1)# scan http
Router(config-av-rule-1)# infected-action destroy
Router(config-av-rule-1)# bypass white-list
Router(config-av-rule-1)# no bypass black-list
Router(config-av-rule-1)# file-decompression
Router(config-av-rule-1)# no file-decompression unsupported
destroy
Router(config-av-rule-1)#exit
Router(config)# show anti-virus rule 1
Anti-Virus Rule: 1
active: yes
log: log
from zone: WAN
to zone: LAN
scan protocols:
http: yes
ftp : yes
smtp: yes
pop3: yes
imap4: yes
infected action:
destroy: yes
send windows message: yes
bypass white list: yes
bypass black list: no
file decompression: yes
destroy unsupported compressed file: no
Table 91
Commands for Anti-virus White and Black Lists
COMMAND
DESCRIPTION
[no] anti-virus white-list activate
Turn on the white list to have the ZyWALL not perform the
anti-virus check on files with names that match the white
list patterns.
[no] anti-virus white-list file-pattern
av_file_pattern
{activate|deactivate}
Adds or removes a white list file pattern. Turns a file pattern
on or off.
anti-virus white-list replace
old_av_file_pattern new_av_file_pattern
{activate|deactivate}
Replaces the specified white list file pattern with a new file
pattern.
Содержание ZyWall
Страница 2: ......
Страница 6: ...Document Conventions ZyWALL ZLD CLI Reference Guide 6 ...
Страница 10: ...10 ...
Страница 26: ...Chapter 1 Command Line Interface ZyWALL ZLD CLI Reference Guide 26 ...
Страница 46: ...46 ...
Страница 84: ...Chapter 6 Interfaces ZyWALL ZLD CLI Reference Guide 84 ...
Страница 98: ...Chapter 8 Route ZyWALL ZLD CLI Reference Guide 98 ...
Страница 106: ...Chapter 10 Zones ZyWALL ZLD CLI Reference Guide 106 ...
Страница 110: ...Chapter 11 DDNS ZyWALL ZLD CLI Reference Guide 110 ...
Страница 116: ...Chapter 12 Virtual Servers ZyWALL ZLD CLI Reference Guide 116 ...
Страница 120: ...Chapter 13 HTTP Redirect ZyWALL ZLD CLI Reference Guide 120 ...
Страница 124: ...Chapter 14 ALG ZyWALL ZLD CLI Reference Guide 124 ...
Страница 125: ...125 PART III Firewall Firewall 127 ...
Страница 126: ...126 ...
Страница 134: ...Chapter 15 Firewall ZyWALL ZLD CLI Reference Guide 134 ...
Страница 135: ...135 PART IV VPN IPSec VPN 137 SSL VPN 147 L2TP VPN 153 ...
Страница 136: ...136 ...
Страница 146: ...Chapter 16 IPSec VPN ZyWALL ZLD CLI Reference Guide 146 ...
Страница 152: ...Chapter 17 SSL VPN ZyWALL ZLD CLI Reference Guide 152 ...
Страница 160: ...Chapter 18 L2TP VPN ZyWALL ZLD CLI Reference Guide 160 ...
Страница 161: ...161 PART V Application Patrol Application Patrol 163 ...
Страница 162: ...162 ...
Страница 174: ...Chapter 19 Application Patrol ZyWALL ZLD CLI Reference Guide 174 ...
Страница 175: ...175 PART VI Anti X Anti Virus 177 IDP Commands 185 Content Filtering 203 Anti Spam 215 ...
Страница 176: ...176 ...
Страница 202: ...Chapter 21 IDP Commands ZyWALL ZLD CLI Reference Guide 202 ...
Страница 214: ...Chapter 22 Content Filtering ZyWALL ZLD CLI Reference Guide 214 ...
Страница 224: ...Chapter 23 Anti Spam ZyWALL ZLD CLI Reference Guide 224 ...
Страница 225: ...225 PART VII Device HA Device HA 227 ...
Страница 226: ...226 ...
Страница 236: ...236 ...
Страница 248: ...Chapter 26 Addresses ZyWALL ZLD CLI Reference Guide 248 ...
Страница 252: ...Chapter 27 Services ZyWALL ZLD CLI Reference Guide 252 ...
Страница 262: ...Chapter 29 AAA Server ZyWALL ZLD CLI Reference Guide 262 ...
Страница 266: ...Chapter 30 Authentication Objects ZyWALL ZLD CLI Reference Guide 266 ...
Страница 272: ...Chapter 31 Certificates ZyWALL ZLD CLI Reference Guide 272 ...
Страница 276: ...Chapter 32 ISP Accounts ZyWALL ZLD CLI Reference Guide 276 ...
Страница 280: ...Chapter 33 SSL Application ZyWALL ZLD CLI Reference Guide 280 ...
Страница 288: ...Chapter 34 Endpoint Security ZyWALL ZLD CLI Reference Guide 288 ...
Страница 289: ...289 PART IX System System 291 System Remote Management 299 ...
Страница 290: ...290 ...
Страница 298: ...Chapter 35 System ZyWALL ZLD CLI Reference Guide 298 ...
Страница 314: ...314 ...
Страница 332: ...Chapter 37 File Manager ZyWALL ZLD CLI Reference Guide 332 Figure 55 Startup Complete ...
Страница 344: ...Chapter 39 Reports and Reboot ZyWALL ZLD CLI Reference Guide 344 ...
Страница 346: ...Chapter 40 Session Timeout ZyWALL ZLD CLI Reference Guide 346 ...
Страница 348: ...Chapter 41 Diagnostics ZyWALL ZLD CLI Reference Guide 348 ...
Страница 362: ...Chapter 44 Watchdog Timer ZyWALL ZLD CLI Reference Guide 362 ...
Страница 363: ...363 PART XI Command List List of Commands Alphabetical 365 ...
Страница 364: ...364 ...
Страница 394: ...List of Commands Alphabetical ZyWALL ZLD CLI Reference Guide 394 ...