Restrict file types with file filtering

Configure file filtering if you want to restrict the file types that are allowed through the firewall, and to apply malware detection to files.

Before you begin

Integrate or configure one or more malware detection methods.

Rules for file filtering are defined in the File Filtering Policy. When a file transfer is detected, the traffic is checked against the File Filtering Policy. The first rule that matches the traffic is applied. If no matching rule is found, the file transfer is allowed.

If you do not want to create a custom File Filtering Policy, you can use one of the following default File Filtering Policy elements:

  • Anti-Malware All — Applies the anti-malware and file reputation scanning methods that are defined in the Engine Editor to all traffic. Rematches archive content for the following file types: Memory Dumps, Media File, Data File, Text, Empty.
  • Anti-Malware Legacy — Applies the anti-malware and file reputation scanning methods that are defined in the Engine Editor to all traffic. Rematches archive content for all file types.
  • Default File Filtering — Applies specific scanning methods and options depending on the file source, file destination, and file type.