Skip to main content
CAD
New Member
September 26, 2016
Solved

enable heuristic&quarantine

  • September 26, 2016
  • 1 reply
  • 7139 views

Hello all,

I am running firmware 5.2.8

 

what the benefit and impact of enable "heuristic quarantine" in Antivirus profile?

What do I need to do it?

 

Thanks

    Best answer by oheigl

    Hello CAD,

     

    maybe you could try to read the admin guide before asking these kind of questions (Handbook 5.4, Page 2112), or is this information not enough for you?:

     

    Heuristics After an incoming file has passed the grayware scan, it is subjected to the heuristics scan. The FortiGate heuristic antivirus engine, if enabled, performs tests on the file to detect virus-like behavior or known virus indicators. In this way, heuristic scanning may detect new viruses, but may also produce some false positive results. You configure heuristics from the CLI. To set heuristics, enter the following in the CLI: config antivirus heuristic set mode {pass |block |disable} end l “block” enables heuristics and any files determined to be malware are blocked from entering the network. l “pass” enables heuristics but any files determined to be malware are still allowed to pass through to the recipient. l “disable” turns off heuristics.

    1 reply

    CAD
    CADAuthor
    New Member
    September 27, 2016

    Any insight ?

    CAD
    CADAuthor
    New Member
    October 13, 2016

    any advise please?

    oheigl
    oheiglAnswer
    New Member
    October 24, 2016

    Hello CAD,

     

    maybe you could try to read the admin guide before asking these kind of questions (Handbook 5.4, Page 2112), or is this information not enough for you?:

     

    Heuristics After an incoming file has passed the grayware scan, it is subjected to the heuristics scan. The FortiGate heuristic antivirus engine, if enabled, performs tests on the file to detect virus-like behavior or known virus indicators. In this way, heuristic scanning may detect new viruses, but may also produce some false positive results. You configure heuristics from the CLI. To set heuristics, enter the following in the CLI: config antivirus heuristic set mode {pass |block |disable} end l “block” enables heuristics and any files determined to be malware are blocked from entering the network. l “pass” enables heuristics but any files determined to be malware are still allowed to pass through to the recipient. l “disable” turns off heuristics.