Anti-Malware
An Anti-Malware Profile enables anti-malware protection using the Talos ClamAV virus detection engine. ClamAV® is an antivirus engine for detecting trojans, viruses, malware and other malicious threats.
The following steps will guide you creating an Anti-Malware profile and associate it with a Policy Rule.
Create an Anti-Malware
Procedure
Step 1 |
Navigate to . |
Step 2 |
Select Anti-malware. |
Step 3 |
Provide a Name and Description. |
Step 4 |
Click Manual or Automatic mode for Talos Ruleset Version selection |
Step 5 |
In Manual mode, select the Talos Ruleset Version from dropdown. The selected ruleset version is used by the Multicloud Defense datapath engine on all Gateways which use this profile and is not automatically updated to newer ruleset versions. |
Step 6 |
In Automatic mode, select how many days to delay the deployment by, after the ruleset version is published by Multicloud Defense. New rulesets are published daily by Multicloud Defense and the Gateways using this profile are automatically updated to the latest ruleset version which is N days or older, where N is the "delay by days" argument selected from the dropdown. For example, if you select to delay the deployment by 5 days on Jan 10, 2021, the Multicloud Defense Controller will select a ruleset version which was published on Jan 5th or before. Note that Multicloud Defense may not publish on some days if our internal testing with that ruleset version fails for some reason. |
Step 7 |
Select the desired Action to take when a match for a virus signature is found. |
What to do next
Associate the AntiMalware Profile with a Ruleset
Check this document to create/edit rules