Virus Scan Properties and Logs

This section describes the virus scan properties and logs.

Table 3-60 Virus Scan Properties

Property Description

Maximum file size to scan (maxsize)

Files larger than this size will not be scanned, to avoid significant performance penalties. These large files are unlikely to be executable themselves (such as database files), and so are less likely to pose a risk to vulnerable clients. The default value is 1 GB.

Allow access to files that exceed maximum file size (maxsize_action)

Enabled by default, this property allows access to files larger than the maximum scan size (which are therefore not scanned prior to being returned to clients). Administrators at a site with more stringent security requirements may elect to disable this option and increase the maximum file size, so that all accessible files are known to be scanned for viruses.

Use TLS (use_tls)

Enabled by default, this property determines if the TLS protocol is used to connect to virus scan engines, which must be TLS enabled.

If non-TLS scan engines were set up on the appliance before software release OS8.8.69 (when this feature was supported), this property is disabled after a software update to OS8.8.69 or later. To use TLS virus scan engines, enable this property, upload TLS certificates, and assign the certificates as trusted certificates to the virus scan (vscan) service. Also, see Scanning Engines.

Require that certificate matches hostname (host_match)

Enabled by default, this property determines if the TLS trusted certificate must match the hostname of the virus scan engine server.

The Virus Scan service events log is vscan.

Related Topics