Fortinet Document Library
Version:
3.2.2
3.2.1
3.2.0
Version:
3.1.4
3.1.3
3.1.2
Version:
3.1.1
3.1.0
3.0.6
Version:
3.0.5
3.0.4
3.0.3
Version:
3.0.2
3.0.1
3.0.0
Version:
2.5.2
2.5.1
2.5.0
Version:
2.4.1
2.4.0
Table of Contents
Introduction
About this document
Connecting to the Command Line Interface
Using the GUI
GUI overview
Connecting to the GUI
Default Port Information
Dashboard
Customizing the dashboard
System Information
System Resources
System Resources Usage Timeline
Scanning Statistics
File Scanning Activity
Top Devices
Top Critical Logs
Pending Job Statistics
Disk Monitor
Sniffer Traffic Throughput
Threats Distribution
Customized Threats Distribution
Quick Download
Basic System Settings
Change the system host name
Change the administrator password
Change the GUI idle timeout
Configure the system time
Microsoft Windows VM license activation
Microsoft Office license upload and activation
Log out of the unit
Visit online help
Refresh current web page
Toggle left-side menu style
Update the FortiSandbox firmware
Reboot and shut down the unit
Backup or restore the system configuration
FortiView
Operation Center
Threats by Topology
Threats by Hosts
Threats by Hosts - level 1
Threats by Hosts - level 2
Threats by Hosts - level 3
Threats by Hosts - level 4
Threats by Files
Threats by Files - level 1
Threats by Files - level 2
Threats by Files - level 3
Threats by Files - level 4
Threats by Devices
Threats by Devices - level 1
Threats by Devices - level 2
Threats by Devices - level 3
Threats by Devices - level 4
Event Calendar
File Scan Search
URL Scan Search
Network
Interfaces
Edit an interface
Edit administrative access
Failover IP
DNS Configuration
System Routing
System
Administrators
Admin Profiles
Wildcard Admin Authentication
Device Groups
Certificates
LDAP Servers
RADIUS Servers
Mail Server
SNMP
Configuring the SNMP agent
MIB files
FortiGuard
Login Disclaimer
Settings
Job View Settings
Event Calendar Settings
Virtual Machine
VM Status
Virtual Machine
Clone Number for VM Image
VM Screenshot
Scan Policy
Scan Profile
File types
Scan Profile Job Queue Tab
Scan Profile VM Association Tab
File Scan Priority
File Scan Flow
URL Scan Flow
Job Queue Priority
General
How to improve system scan performance
Allowlist and blocklist (white/black lists)
Overridden Verdicts
YARA Rules
URL Category
Working Together With URL Pre-Filtering
Customized Rating
Job Archive
Global Network
Local Packages
Malware and URL Package Options
IOC Package
Scan Input
File Input
File On Demand
URL On Demand
Job Queue
Sniffer
Device
Supported Devices
FortiGate devices
FortiMail Devices
FortiWeb Devices
FortiClient EMS Devices
FortiClient
Adapter
Configure Carbon Black/Bit9 Server
Configure ICAP Client
Configure FortiMail to integrate with FortiSandbox BCC Adapter
Network Share
Scan Details
Quarantine
Malware Package
URL Package
HA-Cluster
Centrally manage worker (slave) nodes on the primary (master) node
Requirements before Configuring a HA Cluster
Role of the primary (master) and worker (slave) node
Configure a cluster level failover IP set for primary (master) unit
Main HA-Cluster CLI Commands
Upgrading or rebooting a Cluster
Health Check
Job Summary
Status
File Detection
Summary Report
Customizing the summary report page
File Scan
Network Alerts
Summary Report
Customizing the summary report page
Network Alerts
URL Detection
Summary Report
Customizing the summary report page
URL Scan
Log & Report
About Logs
Log Details
Logging Levels
Raw logs
Log Categories
Log Servers
Local Log
Diagnostic Logs
Viewing logs in FortiAnalyzer
Customizing the log view
Columns
Summary Reports
Generate reports
Report Center
Appendix A - View Details Page Reference
Appendix B - Reset a Lost Password
Appendix C - Hot Swapping Hard Disks
Appendix D - Create a Customized Virtual Machine Image Using Pre-Configured VMs
Appendix E - Create a Customized Virtual Machine Image Using Your Own ISO
Appendix F - FortiCloud Sandbox
Change Log
Home
FortiSandbox 3.0.6
Administration Guide
Administration Guide
Introduction
About this document
Connecting to the Command Line Interface
Using the GUI
GUI overview
Connecting to the GUI
Default Port Information
Dashboard
Customizing the dashboard
System Information
System Resources
System Resources Usage Timeline
Scanning Statistics
File Scanning Activity
Top Devices
Top Critical Logs
Pending Job Statistics
Disk Monitor
Sniffer Traffic Throughput
Threats Distribution
Customized Threats Distribution
Quick Download
Basic System Settings
Change the system host name
Change the administrator password
Change the GUI idle timeout
Configure the system time
Microsoft Windows VM license activation
Microsoft Office license upload and activation
Log out of the unit
Visit online help
Refresh current web page
Toggle left-side menu style
Update the FortiSandbox firmware
Reboot and shut down the unit
Backup or restore the system configuration
FortiView
Operation Center
Threats by Topology
Threats by Hosts
Threats by Hosts - level 1
Threats by Hosts - level 2
Threats by Hosts - level 3
Threats by Hosts - level 4
Threats by Files
Threats by Files - level 1
Threats by Files - level 2
Threats by Files - level 3
Threats by Files - level 4
Threats by Devices
Threats by Devices - level 1
Threats by Devices - level 2
Threats by Devices - level 3
Threats by Devices - level 4
Event Calendar
File Scan Search
URL Scan Search
Network
Interfaces
Edit an interface
Edit administrative access
Failover IP
DNS Configuration
System Routing
System
Administrators
Admin Profiles
Wildcard Admin Authentication
Device Groups
Certificates
LDAP Servers
RADIUS Servers
Mail Server
SNMP
Configuring the SNMP agent
MIB files
FortiGuard
Login Disclaimer
Settings
Job View Settings
Event Calendar Settings
Virtual Machine
VM Status
Virtual Machine
Clone Number for VM Image
VM Screenshot
Scan Policy
Scan Profile
File types
Scan Profile Job Queue Tab
Scan Profile VM Association Tab
File Scan Priority
File Scan Flow
URL Scan Flow
Job Queue Priority
General
How to improve system scan performance
Allowlist and blocklist (white/black lists)
Overridden Verdicts
YARA Rules
URL Category
Working Together With URL Pre-Filtering
Customized Rating
Job Archive
Global Network
Local Packages
Malware and URL Package Options
IOC Package
Scan Input
File Input
File On Demand
URL On Demand
Job Queue
Sniffer
Device
Supported Devices
FortiGate devices
FortiMail Devices
FortiWeb Devices
FortiClient EMS Devices
FortiClient
Adapter
Configure Carbon Black/Bit9 Server
Configure ICAP Client
Configure FortiMail to integrate with FortiSandbox BCC Adapter
Network Share
Scan Details
Quarantine
Malware Package
URL Package
HA-Cluster
Centrally manage worker (slave) nodes on the primary (master) node
Requirements before Configuring a HA Cluster
Role of the primary (master) and worker (slave) node
Configure a cluster level failover IP set for primary (master) unit
Main HA-Cluster CLI Commands
Upgrading or rebooting a Cluster
Health Check
Job Summary
Status
File Detection
Summary Report
Customizing the summary report page
File Scan
Network Alerts
Summary Report
Customizing the summary report page
Network Alerts
URL Detection
Summary Report
Customizing the summary report page
URL Scan
Log & Report
About Logs
Log Details
Logging Levels
Raw logs
Log Categories
Log Servers
Local Log
Diagnostic Logs
Viewing logs in FortiAnalyzer
Customizing the log view
Columns
Summary Reports
Generate reports
Report Center
Appendix A - View Details Page Reference
Appendix B - Reset a Lost Password
Appendix C - Hot Swapping Hard Disks
Appendix D - Create a Customized Virtual Machine Image Using Pre-Configured VMs
Appendix E - Create a Customized Virtual Machine Image Using Your Own ISO
Appendix F - FortiCloud Sandbox
Change Log
3.0.6
3.2.2
3.2.1
3.2.0
3.1.4
3.1.3
3.1.2
3.1.1
3.1.0
3.0.6
3.0.5
3.0.4
3.0.3
3.0.2
3.0.1
3.0.0
2.5.2
2.5.1
2.5.0
2.4.1
2.4.0
Download PDF
Copy Link
File Detection
This section includes the following topics:
Summary Report
File Scan
File Detection
This section includes the following topics:
Summary Report
File Scan
Link
PDF
TOC