4.2.4 Enable AI /heuristic based malware detection

Warning! Audit Deprecated

This audit has been deprecated and will be removed in a future update.

View Next Audit Version

Information

AI /heuristic based detection should be enabled.

Rationale:

The AV Engine AI malware detection model integrates into regular AV scanning to help detect potentially malicious Windows Portable Executables (PEs) in order to mitigate zero-day attacks. It is an additional layer of protection on top of traditional antivirus protection.

In version 6.x, it is named 'Heuristic detection'. On version 7.x, Fortinet has renamed this to AI based detection.

Solution

FGT1 # config antivirus settings

FGT1 (settings) # set machine-learning-detection enable

Default Value:

Disabled (for version 6.4.x)

Enabled (for version 7.x)