FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
bkarl
Staff
Staff
Article Id 272891
Description

This article describes the correct way to combine File Filter and Antivirus profile in order to avoid EICAR malicious file access.

Scope FortiGate v7.4.0.
Solution
  1. Make sure to have a firewall policy set on proxy inspection mode, the Antivirus profile and File Filter are set on proxy mode.
  2. In this example, default profile and Deep inspection are enabled.
  3. Do not forget to install certificate CA on the PC to protect it.
  4. It is possible to test if to go to: https://www.eicar.org/download-anti-malware-testfile/
  5. Download any of the following files and a blocking message like this one will appear:

 

KB 22 - 1.jpg

 

KB 22 - 2.jpg

 

To install certificate Fortinet_CA_SSL:

'Double-click' on the .cert file, select the Install option -> Local PC/Device, place all certificates on the following store, choose the second folder, select next, and then, select 'Finish'.

 

KB 22 - 4.jpg

 

KB 22 - 3.jpg

Contributors