Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
Not applicable

Howto change FortiGuard AntiSpam priority lower

Hello, I use Fortigate 100A with FG100A-3.00-FW-build572-071126 firmware I have a lot of customers from outside and I would like when people who send message from my domain, won' t be checked by FortiGuard AntiSpam role' s. Mostly their adress IP was in black list and sometimes I have problems adding it to white list. I have added roles in mheader. config spamfilter mheader edit 1 config entries edit 1 set action clear set fieldbody " /@domain.com/i" set fieldname " /^From$/i" set pattern-type regexp next end set name " domain.com" next end But it didn' t help.. I thought I should use some prioryty role, but I couldn' t find how to manage it for FortiGuard. How should I do it properly? This is my config firewall profile. config firewall profile edit " REG_IN" set spambwordthreshold 3 set httpoversizelimit 1 set ftpoversizelimit 1 set imapoversizelimit 20 set pop3oversizelimit 20 set smtpoversizelimit 20 set log-spam enable set log-av-virus enable set log-av-block enable set log-av-oversize enable set log-web-url enable set log-web-ftgd-err enable set ftp no-content-summary splice set http no-content-summary unset https set imap bannedword no-content-summary spamemailbwl spamfsip spamfschksum spamfssubmit spamfsurl spamipbwl spamraddrdns spamrbl set pop3 scan bannedword fragmail no-content-summary spamemailbwl spamfsip spamfschksum spamfssubmit spamfsurl spamipbwl spamraddrdns spamrbl set smtp scan bannedword fragmail spamemailbwl spamfsip spamfschksum spamfssubmit spamfsurl spamhdrcheck spamipbwl spamraddrdns spamrbl splice set smtp-spamhdrip enable set pop3-spamtagtype subject set pop3-spamtagmsg " *****SPAM*****" set imap-spamtagtype subject set imap-spamtagmsg " *****SPAM*****" set spambwordtable 1 set spamemaddrtable 1 set spamipbwltable 1 set spammheadertable 2 set spamrbltable 1 set spamiptrusttable 1 set nntp no-content-summary set ips-signature critical set ips-anomaly critical unset im set comment " " set ftgd-wf-disable all next end What do I do wrong?
1 REPLY 1
abelio
SuperUser
SuperUser

Hello and welcome, Antispam filter order is related with fortios version; you can check here that order: http://kc.forticare.com/default.asp?id=539&SID=&Lang=1 You cannot modify that filter applicaction order. There' re workarounds for your roaming users, like identify them by IP/networks and make special protection profile for them with no fortiguard service spam check; if they' re many and uses dynamic IP addresses that' s is a tricky work as you' ve posted above. Many people could advice to you that the ' right way' is set up VPN access to your internal/DMZ (where your SMTP server lives) for your roaming users and enable SMTP services for them through your internal server. Evaluate if that is an option for you and maybe you could recover some hours avoiding adding IPs , etc to your 100A.

regards




/ Abel

regards / Abel
Labels
Top Kudoed Authors