Fortinet Document Library
Version:
3.2.2
3.2.1
3.2.0
Version:
3.1.4
3.1.3
3.1.2
Version:
3.1.1
3.1.0
3.0.6
Version:
3.0.5
3.0.4
3.0.3
Version:
3.0.2
3.0.1
3.0.0
Version:
2.5.2
2.5.1
2.5.0
Version:
2.4.1
2.4.0
Table of Contents
Introduction
What's new in FortiSandbox 3.0.4
About this document
Connecting to the Command Line Interface
Using the GUI
GUI overview
Connecting to the GUI
Default Port Information
Dashboard
Customizing the dashboard
System Information
System Resources
System Resources Usage Timeline
Scanning Statistics
File Scanning Activity
Top Devices
Top Critical Logs
Pending Job Statistics
Disk Monitor
Sniffer Traffic Throughput
Threats Distribution
Customized Threats Distribution
Quick Download
Basic System Settings
Change the system host name
Change the administrator password
Change the GUI idle timeout
Configure the system time
Microsoft Windows VM license activation
Microsoft Office license upload and activation
Log out of the unit
Visit online help
Refresh current web page
Toggle left-side menu style
Update the FortiSandbox firmware
Reboot and shut down the unit
Backup or restore the system configuration
FortiView
Operation Center
Threats by Topology
Threats by Hosts
Threats by Hosts - level 1
Threats by Hosts - level 2
Threats by Hosts - level 3
Threats by Hosts - level 4
Threats by Files
Threats by Files - level 1
Threats by Files - level 2
Threats by Files - level 3
Threats by Files - level 4
Threats by Devices
Threats by Devices - level 1
Threats by Devices - level 2
Threats by Devices - level 3
Threats by Devices - level 4
Event Calendar
File Scan Search
URL Scan Search
Network
Interfaces
Edit an interface
Edit administrative access
Failover IP
DNS Configuration
System Routing
System
Administrators
Admin Profiles
Certificates
LDAP Servers
RADIUS Servers
Mail Server
SNMP
Configuring the SNMP agent
MIB files
FortiGuard
Login Disclaimer
Settings
Job View Settings
Event Calendar Settings
Virtual Machine
VM Status
Virtual Machine
Clone Number for VM Image
VM Screenshot
Scan Policy
Scan Profile
File types
Scan Profile Job Queue Tab
Scan Profile VM Association Tab
File Scan Priority
File Scan Flow
URL Scan Flow
Job Queue Priority
General
How to improve system scan performance
White/Black Lists
Overridden Verdicts
YARA Rules
URL Category
Working Together With URL Pre-Filtering
Customized Rating
Job Archive
Global Network
Local Packages
Malware and URL Package Options
IOC Package
Scan Input
File Input
File On Demand
URL On Demand
Job Queue
Sniffer
Device
Supported Devices
FortiGate devices
FortiMail Devices
FortiWeb Devices
FortiClient EMS Devices
FortiClient
Adapter
Configure Carbon Black/Bit9 Server
Configure ICAP Client
Configure FortiMail to integrate with FortiSandbox BCC Adapter
Network Share
Scan Details
Quarantine
Malware Package
URL Package
HA-Cluster
Centrally manage Slave nodes on the Master node
Requirements before Configuring a HA Cluster
Master's Role and Slave's Role
Configure a cluster level fail-over IP set for Master unit
Main HA Cluster CLI Commands
Upgrading or rebooting a Cluster
Health Check
Job Summary
Status
Manage Slave Nodes on Master
File Detection
Summary Report
Customizing the summary report page
File Scan
Network Alerts
Summary Report
Customizing the summary report page
Network Alerts
URL Detection
Summary Report
Customizing the summary report page
URL Scan
Log & Report
About Logs
Log Details
Logging Levels
Raw logs
Log Categories
Log Servers
Local Log
Viewing logs in FortiAnalyzer
Customizing the log view
Columns
Summary Reports
Generate reports
Report Center
Appendix A - View Details Page Reference
Appendix B - Reset a Lost Password
Appendix C - Hot Swapping Hard Disks
Appendix D - Create a Customized Virtual Machine Image Using Pre-Configured VMs
Appendix E - Create a Customized Virtual Machine Image Using Your Own ISO
Appendix F - FortiCloud Sandbox
Change Log
Home
FortiSandbox 3.0.4
Administration Guide
Administration Guide
Introduction
What's new in FortiSandbox 3.0.4
About this document
Connecting to the Command Line Interface
Using the GUI
GUI overview
Connecting to the GUI
Default Port Information
Dashboard
Customizing the dashboard
System Information
System Resources
System Resources Usage Timeline
Scanning Statistics
File Scanning Activity
Top Devices
Top Critical Logs
Pending Job Statistics
Disk Monitor
Sniffer Traffic Throughput
Threats Distribution
Customized Threats Distribution
Quick Download
Basic System Settings
Change the system host name
Change the administrator password
Change the GUI idle timeout
Configure the system time
Microsoft Windows VM license activation
Microsoft Office license upload and activation
Log out of the unit
Visit online help
Refresh current web page
Toggle left-side menu style
Update the FortiSandbox firmware
Reboot and shut down the unit
Backup or restore the system configuration
FortiView
Operation Center
Threats by Topology
Threats by Hosts
Threats by Hosts - level 1
Threats by Hosts - level 2
Threats by Hosts - level 3
Threats by Hosts - level 4
Threats by Files
Threats by Files - level 1
Threats by Files - level 2
Threats by Files - level 3
Threats by Files - level 4
Threats by Devices
Threats by Devices - level 1
Threats by Devices - level 2
Threats by Devices - level 3
Threats by Devices - level 4
Event Calendar
File Scan Search
URL Scan Search
Network
Interfaces
Edit an interface
Edit administrative access
Failover IP
DNS Configuration
System Routing
System
Administrators
Admin Profiles
Certificates
LDAP Servers
RADIUS Servers
Mail Server
SNMP
Configuring the SNMP agent
MIB files
FortiGuard
Login Disclaimer
Settings
Job View Settings
Event Calendar Settings
Virtual Machine
VM Status
Virtual Machine
Clone Number for VM Image
VM Screenshot
Scan Policy
Scan Profile
File types
Scan Profile Job Queue Tab
Scan Profile VM Association Tab
File Scan Priority
File Scan Flow
URL Scan Flow
Job Queue Priority
General
How to improve system scan performance
White/Black Lists
Overridden Verdicts
YARA Rules
URL Category
Working Together With URL Pre-Filtering
Customized Rating
Job Archive
Global Network
Local Packages
Malware and URL Package Options
IOC Package
Scan Input
File Input
File On Demand
URL On Demand
Job Queue
Sniffer
Device
Supported Devices
FortiGate devices
FortiMail Devices
FortiWeb Devices
FortiClient EMS Devices
FortiClient
Adapter
Configure Carbon Black/Bit9 Server
Configure ICAP Client
Configure FortiMail to integrate with FortiSandbox BCC Adapter
Network Share
Scan Details
Quarantine
Malware Package
URL Package
HA-Cluster
Centrally manage Slave nodes on the Master node
Requirements before Configuring a HA Cluster
Master's Role and Slave's Role
Configure a cluster level fail-over IP set for Master unit
Main HA Cluster CLI Commands
Upgrading or rebooting a Cluster
Health Check
Job Summary
Status
Manage Slave Nodes on Master
File Detection
Summary Report
Customizing the summary report page
File Scan
Network Alerts
Summary Report
Customizing the summary report page
Network Alerts
URL Detection
Summary Report
Customizing the summary report page
URL Scan
Log & Report
About Logs
Log Details
Logging Levels
Raw logs
Log Categories
Log Servers
Local Log
Viewing logs in FortiAnalyzer
Customizing the log view
Columns
Summary Reports
Generate reports
Report Center
Appendix A - View Details Page Reference
Appendix B - Reset a Lost Password
Appendix C - Hot Swapping Hard Disks
Appendix D - Create a Customized Virtual Machine Image Using Pre-Configured VMs
Appendix E - Create a Customized Virtual Machine Image Using Your Own ISO
Appendix F - FortiCloud Sandbox
Change Log
3.0.4
3.2.2
3.2.1
3.2.0
3.1.4
3.1.3
3.1.2
3.1.1
3.1.0
3.0.6
3.0.5
3.0.4
3.0.3
3.0.2
3.0.1
3.0.0
2.5.2
2.5.1
2.5.0
2.4.1
2.4.0
Download PDF
Copy Link
Scan Policy
This section includes the following topics:
Scan Profile
Job Queue Priority
General
White/Black Lists
Overridden Verdicts
YARA Rules
URL Category
Customized Rating
Job Archive
Local Packages
Scan Policy
This section includes the following topics:
Scan Profile
Job Queue Priority
General
White/Black Lists
Overridden Verdicts
YARA Rules
URL Category
Customized Rating
Job Archive
Local Packages
Link
PDF
TOC