Advanced configuration Protection profiles
FortiGate Version 4.0 Desktop Install Guide
01-400-95522-20090501 29
http://docs.fortinet.com/ • Feedback
Advanced configuration
The Fortinet unit and the FortiOS operating system provide a wide range of advanced
features that enable you to control network and internet traffic and protect your network.
This chapter describes some of these options and where to configure them, after you have
completed basic configuration.
This chapter includes
• Protection profiles
• Firewall policies
• Antivirus options
• AntiSpam options
• Web filtering
• Logging
Protection profiles
A protection profile is a group of settings you can adjust to suit your needs for network
protection. Since protection profiles apply different protection settings to traffic controlled
by firewall policies, you can tailor the settings to the type of traffic each policy handles.
Use protection profiles to configure:
• protocol recognition
• antivirus protection
• web filtering
• web category filtering
• application control
• data leak prevention
• spam filtering
• content archiving
• instant messaging filtering and access control
• P2P access and bandwidth control
• logging options for policies and configurations within the policies
• rate limiting for VoIP protocols.
Using protection profiles, you can customize types and levels of protection for different
firewall policies.
For example, while traffic between internal and external addresses may need strict
protection, traffic between trusted internal addresses may need moderate protection. You
can configure policies for different traffic services to use the same or different protection
profiles.
The Fortinet unit is pre configured with four default protection profiles. In many cases you
can use these default protection profiles, use them just as they are or as a starting point to
create your own.