SonicWALL 3500 Home Security System User Manual


 
SonicWALL NSA 5000/4500/3500 Getting Started Guide Page 45
3. The Enable Outbound Inspection feature is available for
SMTP traffic, such as for a mail server that might be hosted
on the DMZ. Enabling outbound inspection for SMTP scans
mail that is delivered to the internally hosted SMTP server
for viruses.
4. For each protocol you can restrict the transfer of files with
specific attributes by clicking on the Settings button under
the protocol. In the Settings dialog box, you can configure
the following:
Restrict Transfer of password-protected Zip files -
Disables the transfer of password protected ZIP files
over any enabled protocol. This option only functions
on protocols that are enabled for inspection.
Restrict Transfer of MS-Office type files containing
macros (VBA 5 and above) - Disables the transfers of
any MS Office 97 and above files that contain VBA
macros.
Restrict Transfer of packed executable files (UPX,
FSG, etc.) - Disables the transfer of packed
executable files. Packers are utilities that compress
and sometimes encrypt executables. Although there
are legitimate applications for these, they may be used
with the intent of obfuscation, and this makes the
executables less detectable by anti-virus applications.
The packer adds a header that expands the file in
memory, and then executes that file. SonicWALL
Gateway Anti-Virus currently recognizes the most
common packed formats: UPX, FSG, PKLite32, Petite,
and ASPack.
5. Click Configure Gateway AV Settings. The Gateway AV
Settings window allows you to configure clientless
notification alerts and create a SonicWALL GAV exclusion
list.
6. In the Gateway AV Config View window, to suppress the
sending of email messages (SMTP) to clients from
SonicWALL GAV when a virus is detected in an email or
attachment, check the Disable SMTP Responses box.