Skip to main content
Contributor III
May 24, 2005

Performing antivirus scanning non-standard TCP ports

  • May 24, 2005
  • 0 replies
  • 5400 views
Article

Description

How to perform antivirus scanning on non-standard TCP ports.

Components

  • All FortiGate units
  • FortiOS 2.80 and 3.0

Steps or Commands

The following is the default list of standard protocols and associated ports that can be scanned by the Fortigate:

FTP - TCP 21
SMTP - TCP 25
HTTP - TCP 80
POP3 - TCP 110
IMAP - TCP 143

The Fortigate can also be configured to scan these protocols, but on different ports. This is configured via the CLI.

FortiOS Version 3.0

config antivirus service http
   set port 8080
end

FortiOS Version 2.80

config antivirus service http
    set port 8080
    show
   config antivirus service "http"
       set memfilesizelimit 10
       set port 80
        set port 8080
       set uncompsizelimit 10
    end
end


Related Articles

Technical Note : Configuring FortiGate Protocol Recognition to scan traffic on non-standard port - FortiOS 4.0 and above

Thought Leadership Security Summit. Outpace New Threats with AI - enhanced defense. Tuesday, Septmeber 15, 8:30 AM - 2:30 PM PT. The Golf Club at Newcastle, WA.
Fortinet Flag the Hack. Wednesday, August 26, 9:00 AM - 5:00 PM ET, COSM, Atlanta, GA.