D-Link DFL-260E CLI Guide for DFL-260E - Page 84

ALG_FTP

Page 84 highlights

3.4. ALG Chapter 3. Configuration Reference 3.4. ALG This is a category that groups the following object types. 3.4.1. ALG_FTP Description Use an FTP Application Layer Gateway to manage FTP traffic through the system. Properties Name AllowServerPassive ServerPorts AllowClientActive ClientPorts AllowUnknownCommands AllowSITEEXEC MaxLineLength MaxCommandRate Allow8BitStrings AllowResumeTransfer Antivirus ScanExclude CompressionRatio CompressionRatioAction AllowEncryptedZip ZDEnabled ZDNetwork Specifies a symbolic name for the ALG. (Identifier) Allow server to use passive mode (unsafe for server). (Default: No) Server data ports. (Default: 1024-65535) Allow client to use active mode (unsafe for client). (Default: No) Client data ports. (Default: 1024-65535) Allow unknown commands. (Default: No) Allow SITE EXEC. (Default: No) Maximum line length in control channel. (Default: 256) Maximum number of commands per second. (Default: 20) Allow 8-bit strings in control channel. (Default: Yes) Allow RESUME even in case of content scanning. (Default: No) Disabled, Audit or Protect. (Default: Disabled) List of files to exclude from antivirus scanning. (Optional) A compression ratio higher than this value will trigger the action in Compression Ratio Action, a value of zero will disable all compression checks. (Default: 20) The action to take when high compression threshold is violated, all actions are logged. (Default: Drop) Allow encrypted zip files, even though the contents can not be scanned. (Default: No) Enable ZoneDefense Block. (Default: No) Hosts within this network will be blocked at switches if a virus is found. 84

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198

3.4. ALG
This is a category that groups the following object types.
3.4.1. ALG_FTP
Description
Use an FTP Application Layer Gateway to manage FTP traffic through the system.
Properties
Name
Specifies a symbolic name for the ALG. (Identifier)
AllowServerPassive
Allow server to use passive mode (unsafe for serv-
er). (Default: No)
ServerPorts
Server data ports. (Default: 1024-65535)
AllowClientActive
Allow client to use active mode (unsafe for client).
(Default: No)
ClientPorts
Client data ports. (Default: 1024-65535)
AllowUnknownCommands
Allow unknown commands. (Default: No)
AllowSITEEXEC
Allow SITE EXEC. (Default: No)
MaxLineLength
Maximum line length in control channel. (Default:
256)
MaxCommandRate
Maximum
number
of
commands
per
second.
(Default: 20)
Allow8BitStrings
Allow 8-bit strings in control channel. (Default: Yes)
AllowResumeTransfer
Allow RESUME even in case of content scanning.
(Default: No)
Antivirus
Disabled, Audit or Protect. (Default: Disabled)
ScanExclude
List of files to exclude from antivirus scanning.
(Optional)
CompressionRatio
A compression ratio higher than this value will trig-
ger the action in Compression Ratio Action, a value
of
zero
will
disable
all
compression
checks.
(Default: 20)
CompressionRatioAction
The action to take when high compression threshold
is violated, all actions are logged. (Default: Drop)
AllowEncryptedZip
Allow encrypted zip files, even though the contents
can not be scanned. (Default: No)
ZDEnabled
Enable ZoneDefense Block. (Default: No)
ZDNetwork
Hosts
within
this
network
will
be
blocked
at
switches if a virus is found.
3.4. ALG
Chapter 3. Configuration Reference
84