Config UTM Sophos Anti-Virus - Juniper

show system license usage


### License Installation

request system license add terminal


### Configuring the type of engine

set security utm feature-profile anti-virus type sophos-engine

Note:  Beginning in 18.4R1, where to configure this feature has changed

set security utm default-configuration anti-virus type sophos-engine


 ### Configure the UTM policies for the desired protocols

set security utm utm-policy sophos-utm-policy anti-virus http-profile junos-sophos-av-defaults

set security utm utm-policy sophos-utm-policy anti-virus ftp upload-profile junos-sophos-av-defaults

set security utm utm-policy sophos-utm-policy anti-virus ftp download-profile junos-sophos-av-defaults

set security utm utm-policy sophos-utm-policy anti-virus smtp-profile junos-sophos-av-defaults


### Apply this UTM policy in a security policy 

set security policies from-zone trust to-zone untrust policy utm-security-policy match source-address any

set security policies from-zone trust to-zone untrust policy utm-security-policy match destination-address any

set security policies from-zone trust to-zone untrust policy utm-security-policy match application any

set security policies from-zone trust to-zone untrust policy utm-security-policy then permit application-services utm-policy sophos-utm-policy


### Troubleshooting

### Check the status of the Sophos engine: 

show security utm anti-virus status

### Check the Sophos AV statistics

show security utm anti-virus statistics


sumur : https://kb.juniper.net/InfoCenter/index?page=content&id=KB21889&actp=METADATA



Comments

Popular posts from this blog

IPSec VPN ( Route-based-VPN )