Config UTM Sophos Anti-Virus - Juniper
show system license usage
### License Installation
request system license add terminal
### Configuring the type of engine
set security utm feature-profile anti-virus type sophos-engine
Note: Beginning in 18.4R1, where to configure this feature has changed
set security utm default-configuration anti-virus type sophos-engine
### Configure the UTM policies for the desired protocols
set security utm utm-policy sophos-utm-policy anti-virus http-profile junos-sophos-av-defaults
set security utm utm-policy sophos-utm-policy anti-virus ftp upload-profile junos-sophos-av-defaults
set security utm utm-policy sophos-utm-policy anti-virus ftp download-profile junos-sophos-av-defaults
set security utm utm-policy sophos-utm-policy anti-virus smtp-profile junos-sophos-av-defaults
### Apply this UTM policy in a security policy
set security policies from-zone trust to-zone untrust policy utm-security-policy match source-address any
set security policies from-zone trust to-zone untrust policy utm-security-policy match destination-address any
set security policies from-zone trust to-zone untrust policy utm-security-policy match application any
set security policies from-zone trust to-zone untrust policy utm-security-policy then permit application-services utm-policy sophos-utm-policy
### Troubleshooting
### Check the status of the Sophos engine:
show security utm anti-virus status
### Check the Sophos AV statistics
show security utm anti-virus statistics
sumur : https://kb.juniper.net/InfoCenter/index?page=content&id=KB21889&actp=METADATA
Comments
Post a Comment