User Tools

Site Tools



This shows you the differences between two versions of the page.

Link to this comparison view

Both sides previous revision Previous revision
Next revision
Previous revision
clamav50 [2019/09/17 11:41]
clamav50 [2020/03/11 15:58] (current)
Line 1: Line 1:
-=====Antivirus=====+===== ClamAV ​Antivirus=====
-====Main page of the module====+The “ClamAV Antivirus” module is placed in the “Security” menu. This module is designed to protect against malicious programs from entering ​the local network. The module ​has three tabs: “ClamAV Antivirus”,​ “Settings” and “Log”.
-Antivirus is a service that protect from malicious files in the LAN. For those purposes ICS CUBE uses antiviruses ClamAV and Kaspersky.+{{:clamav1.png?700|}}
-On the main page of the module ​you can see status of the services “Antivirus” and “Proxy-server ​antivirus”, the “Disable” button (or “Enable”,​ if the module is disabled) for each service, the “Update now” button for immediate update of databases and last log messages.+On the “ClamAV Antivirus” tab you can see status of the services “ClamAV ​Antivirus” and “Antivirus proxy server”, the “Disable” button (or “Enable”,​ if the module is disabled) for each service.
-By default the Proxy-server antivirus” is in the “Not ​set” state. To activate itcheck the “Use ClamAV antivirus” parameter ​in the proxy-server settings.+The ClamAv Antivirus” service ​is responsible for the operation of the ClamAV antivirus, which checks mail messages if the [[mail_setup50|corresponding flag is set]]as well as checks ​the HTTP and HTTPS traffic in case of Antivirus proxy server” is running and the [[proxy50|corresponding flag is set]] in the “Proxy” menu “Settings” tab.
-====Setting====+Accordingly,​ the “Antivirus proxy server” service is responsible for sending HTTP / HTTPS packets to ClamAV Antivirus, provided that the flag is set in the proxy server settings.
-Check for antivirus databases updates is for the period between databases updates.+The widget of the “ClamAV Antivirus” service also displays: the number of signatures, current base versions and the ClamAV Antivirus version, time and date of the last updated, the “Update Now” button and the log for the current date.
-Flags Use proxy and Check mail work like the corresponding ones in the “Proxy” and “Mail” modules - they turn up antivirus check in these services.+==== Settings====
-Update databases when antivirus is disabled - if system load is immense, antivirus will be updated only when disabled to decrease the load.+{{:clamav2.png?|}}
-====Log====+This tab is designed to configure the ClamAV Antivirus.The “Use in proxy” and “Scan mail” checkboxes are corresponded to flags in the setting tabs of the “Proxy” and “Mail” modules. They are run up ClamAV Antivirus for traffic filter going through proxy server and mail attachments. 
 +The “Check for bases updates” field allows to set the frequency of antivirus database update checks. By default in case of setting at least of one flag on this tab the check is working hourly. There is an ability to set the “Time” for base updates checking if “Every day” or “Once per week” periods were selected. The “Update virus bases while program is shutted down” checkbox allows to run up base updates checking with disabled “ClamAV Antivirus” service. 
 +==== Log==== 
 +The “Log” tab displays a summary of all system messages of the corresponding servers with the date and time. The log is divided into pages, using the “forward” and “back” buttons it is possible to go from page to page, or enter the number of the desired page. 
 +Log entries are highlighted in color depending on the type of message. Normal system messages are marked in white, system status messages (on / off, user connection) are green, warnings are yellow, errors are red. 
 +In the upper right corner of the log is a search bar. And the ability to select the period for displaying the event log. By default, the log displays events for the current date. If necessary, you can save the log data to a file by clicking the “Export” button or delete the log data for a certain period by clicking the “Delete logs” button.
-In the “Log” tab you can find all the system messages from the antivirus. The log is divided in pages, you can use the buttons “Next” and “Previous” to navigate through it, or enter the page numberinto the appropriate field to redirect to it directly. 
-Logs are marked by colour: ordinary messages are white, system status messages are green, and errors are red. 
-In the top right corner there is a search line. You can use it to find specific logs. 
-The log always shows records for the current date. To check log for some other day, you can pick a date from the calendar in the top left corner. 
-If it’s necessary to save log into a file, you can use the button “Export” for it. 
clamav50.1568709671.txt.gz · Last modified: 2019/09/17 11:41 by root