Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    AV scanner wont scan FTP, HTTPS, or email?

    Scheduled Pinned Locked Moved pfSense Packages
    9 Posts 6 Posters 4.6k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • J
      jaredadams
      last edited by

      Is this true?

      1 Reply Last reply Reply Quote 0
      • C
        cmb
        last edited by

        If you're talking about the HAVP package, it's a HTTP proxy, it scans HTTP only. Nothing can scan HTTPS short of ugly MITM on SSL that some commercial products implement (which requires installing a cert on all client systems). Gateway AV is ugly any way it's done, better handled on servers and clients, or better yet put in a proxy that only allows a few users to even download such files. AV in general is highly ineffective against typical web malware.

        1 Reply Last reply Reply Quote 0
        • J
          jaredadams
          last edited by

          I dont want to say it…..

          but Untangle scans email, and ftp.

          Any way to get pfsense to do it?

          1 Reply Last reply Reply Quote 0
          • D
            dvserg
            last edited by

            @jaredadams:

            I dont want to say it…..

            but Untangle scans email, and ftp.

            Any way to get pfsense to do it?

            HAVP can scan HTTP only.

            SquidGuardDoc EN  RU Tutorial
            Localization ru_PFSense

            1 Reply Last reply Reply Quote 0
            • ?
              Guest
              last edited by

              @jaredadams:

              I dont want to say it…..

              but Untangle scans email, and ftp.

              Any way to get pfsense to do it?

              Untangle isn't pfSense.  Many people, who can stand the terrible performance and shocking interface, use Untangle in conjunction with pfSense.

              1 Reply Last reply Reply Quote 0
              • J
                jaredadams
                last edited by

                Look I'm completely aware that pfsense is not untangle and the point of my post was not to point out something that pfsense doesn't do compared to untangle but rather ask if there is a way to get pfsense to do something that untangle does.

                I ask this because I want to use pfsense NOT untangle. But I also would like to scan ftp and email.

                1 Reply Last reply Reply Quote 0
                • jimpJ
                  jimp Rebel Alliance Developer Netgate
                  last edited by

                  No. Nobody has written packages for scanning e-mail or FTP for viruses, and it isn't likely that someone will (unless someone sponsors the feature).

                  Remember: Upvote with the 👍 button for any user/post you find to be helpful, informative, or deserving of recognition!

                  Need help fast? Netgate Global Support!

                  Do not Chat/PM for help!

                  1 Reply Last reply Reply Quote 0
                  • N
                    NightHawk007
                    last edited by

                    Just remember the lag that this antivirus causes is not worth using it .I used another utm software and there was zero lag and scanned everything going through it with no problems .

                    1 Reply Last reply Reply Quote 0
                    • C
                      cmb
                      last edited by

                      @NightHawk007:

                      Just remember the lag that this antivirus causes is not worth using it .I used another utm software and there was zero lag and scanned everything going through it with no problems .

                      Every gateway AV causes lag, and weirdness with downloads from the internal clients' perspective as the proxy itself downloads it first and scans it, then sends it to the client.

                      1 Reply Last reply Reply Quote 0
                      • First post
                        Last post
                      Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.