HP VPN Firewall Appliances Attack Protection Configuration Guide

108
Configuring an SMTP filtering policy
You can specify multiple filtering entries for filtering SMTP packets in an SMTP filtering policy. Packets that
match any filtering entry are dropped.
An SMTP filtering policy can contain different types of filtering entries and each type can contain multiple
filtering entries.
To configure an SMTP filtering policy:
Ste
p
Command
Remarks
1. Enter system view.
system-view N/A
2. Enter VD view.
switchto vd vd-name
This command is required for entering the
system view of a non-default VD.
3. Create a SMTP filtering
policy and enter its view.
content-filtering smtp-policy
policy-name
By default, no SMTP filtering policy exists.
4. Specify an email
address filtering entry for
sender filtering.
sender-filtering email-entry
email-entry-name
Optional.
By default, no email address filtering entry is
specified for sender filtering.
5. Specify an email
address filtering entry for
receiver filtering.
receiver-filtering email-entry
email-entry-name
Optional.
By default, no email address filtering entry is
specified for receiver filtering.
6. Specify a keyword
filtering entry for subject
filtering.
subject-filtering
keyword-entry
keyword-entry-name
Optional.
By default, no keyword filtering entry is
specified for subject filtering.
7. Specify a keyword
filtering entry for body
filtering.
body-filtering keyword-entry
keyword-entry-name
Optional.
By default, no keyword filtering entry is
specified for body filtering.
8. Specify a filename
filtering entry for
attachment name
filtering.
attachment-name-filtering
filename-entry
filename-entry-name
Optional.
By default, no filename filtering entry is
specified for attachment name filtering.
9. Specify a keyword
filtering entry for
attachment content
filtering.
attachment-body-filtering
keyword-entry
keyword-entry-name
Optional.
By default, no keyword filtering entry is
specified for attachment content filtering.
10. Enable illegal command
word blocking.
illegal-command-blocking
enable
Optional.
By default, illegal command word blocking
is disabled.
11. Enable oversize email
blocking.
oversize-mail-blocking enable
[ maxsize max-bytes ]
Optional.
By default, oversize email blocking is
disabled.
12. Enable SMTP filtering
logging.
logging enable
Optional.
By default, SMTP filtering logging is
disabled.
SMTP filtering logging takes effect only when
interzone policy rule logging is enabled.