Analyzing files tab

Maximum size for antivirus and sandboxing analysis (KB) The default size depends on the firewall model:
  • S model firewalls (SN160(W), SN210(W) and SN310): 4000 KB.
  • M model firewalls (SN510, SN710, SNi20 and SNi40): 4000 KB.
  • L model firewalls (SN910): 8000 KB.
  • XL model firewalls (EVA1, EVA2, EVA3,EVA4, EVAU, SN2000, SN2100, SN3000, SN3100, SN6000 and SN6100): 16000 KB.

WARNING

When manually defining a size limit for analyzed data, ensure that all values are coherent. The total memory space corresponds to a common space for all the resources reserved for the Antivirus service. If you define the size limit for analyzed data on SMTP as 100% of the total size, no other files can be analyzed at the same time.

Action on messages

This zone defines the behavior of the antivirus module when certain events occur.

When a virus is detected This field contains 2 options. "Pass" and "Block". By selecting “Block”, the analyzed file will not be sent. By selecting Pass, the antivirus will send the file event it has been found to be infected.
When the antivirus scan fails The option Pass without analyzing defines the behavior of the antivirus module if the analysis of the file it is scanning fails.
  • If Block has been specified, the file being scanned will not be sent.
  • If Pass without analyzing has been specified, the file being scanned will be sent.
When data collection fails This option defines the behavior of the antivirus module when certain events occur.
Examples: If the hard disk has reached its capacity, information will not be downloaded.
The maximum size that the file can reach for the antivirus scan is restricted (1000KB).