<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: c-mode antivirus in ONTAP Discussions</title>
    <link>https://community.netapp.com/t5/ONTAP-Discussions/c-mode-antivirus/m-p/113407#M24061</link>
    <description>&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Vserver:cluster01&lt;BR /&gt;Policy: default_CIFS&lt;BR /&gt;Policy Status: off&lt;BR /&gt;Policy Config Owner: cluster&lt;BR /&gt;File-Access Protocol: CIFS&lt;BR /&gt;Filters: scan-mandatory&lt;BR /&gt;Max File Size Allowed for Scanning: 2GB&lt;BR /&gt;File Paths Not to Scan: -&lt;BR /&gt;File Extensions Not to Scan: -&lt;BR /&gt;File Extensions to Scan: *&lt;BR /&gt;Scan Files with No Extension: true&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;change previllage to &amp;nbsp;advacned mode&amp;nbsp;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;cluster01:: set -privilege advanced&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;then you should be able change the filter value for on access policy&amp;nbsp;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;cluster01::vserver vscan on-access-policy*&amp;gt; modify -vserver * -policy-name default_CIFS -filters "-"&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;you can verify it after changing&amp;nbsp;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;cluster01::vserver vscan on-access-policy*&amp;gt; show -in&lt;/P&gt;&lt;P&gt;Vserver: cluster01&lt;BR /&gt;Policy: default_CIFS&lt;BR /&gt;Policy Status: off&lt;BR /&gt;Policy Config Owner: cluster&lt;BR /&gt;File-Access Protocol: CIFS&lt;BR /&gt;Filters: -&lt;BR /&gt;Max File Size Allowed for Scanning: 2GB&lt;BR /&gt;File Paths Not to Scan: -&lt;BR /&gt;File Extensions Not to Scan: -&lt;BR /&gt;File Extensions to Scan: *&lt;BR /&gt;Scan Files with No Extension: true&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;change previllage to &amp;nbsp;admin mode&amp;nbsp;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;cluster01:: set -privilege admin&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Mon, 07 Dec 2015 15:40:15 GMT</pubDate>
    <dc:creator>OhmR</dc:creator>
    <dc:date>2015-12-07T15:40:15Z</dc:date>
    <item>
      <title>c-mode antivirus</title>
      <link>https://community.netapp.com/t5/ONTAP-Discussions/c-mode-antivirus/m-p/94167#M19463</link>
      <description>&lt;P&gt;&lt;SPAN style="font-family: arial,helvetica,sans-serif;"&gt;&lt;SPAN style="font-size: 10pt;"&gt;I am trying to wrap my head around the on-access-policy for vscan in c-mode. I want to make sure that files are still served if anti-virus servers were to be unavailable. But looking at all the documentation I don't see an option for this.&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-family: arial,helvetica,sans-serif; font-size: 10pt;"&gt;According to documentation and support, the scan-mandatory flag means that it won't serve data if vscan servers are not available.&lt;BR /&gt;Their suggestion was to use the scan-ro-volume flag. Does this mean allow files from RO and RW volumes to be scanned, or just RO volumes? I am guessing the just RO volumes as the filter for on-access-policy can have multiple options selected.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-family: arial,helvetica,sans-serif; font-size: 10pt;"&gt;Thoughts&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;SPAN style="color: #0078c2; font-family: arial,helvetica,sans-serif; font-size: 10pt;"&gt;&lt;SPAN style="color: #0078c2;"&gt;&lt;SPAN style="color: #0078c2;"&gt;&lt;A target="_blank" href="https://library.netapp.com/ecm/ecm_download_file/ECMP1366832" title="https://library.netapp.com/ecm/ecm_download_file/ECMP1366832"&gt;https://library.netapp.com/ecm/ecm_download_file/ECMP1366832&lt;/A&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-family: arial,helvetica,sans-serif; font-size: 10pt;"&gt;page 1921&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-family: arial,helvetica,sans-serif;"&gt;&lt;SPAN style="font-size: 10pt;"&gt;&lt;SPAN style="font-size: 10pt;"&gt;-filters &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN style="font-size: 10pt;"&gt;&lt;SPAN style="font-size: 10pt;"&gt;{scan-mandatory|scan-ro-volume|scan-execute-access}, ...] - Filters&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-family: arial,helvetica,sans-serif; font-size: 10pt;"&gt;&lt;SPAN style="font-size: 10pt;"&gt;scan-mandatory - Enable mandatory scan. File access will be denied if there are &lt;/SPAN&gt;&lt;/SPAN&gt;no external virus-scanning servers available for virus scanning&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-family: arial,helvetica,sans-serif;"&gt;&lt;SPAN style="font-size: 10pt;"&gt;&lt;SPAN style="font-size: 10pt;"&gt;scan-ro-volume - Enable scans for read-only volume.&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-family: arial,helvetica,sans-serif; font-size: 10pt;"&gt;&lt;SPAN style="font-size: 10pt;"&gt;scan-execute-access - Scan only files opened with execute-access (CIFS only).&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-family: arial,helvetica,sans-serif;"&gt;By default, it is scan-mandatory.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 22 Oct 2014 15:01:14 GMT</pubDate>
      <guid>https://community.netapp.com/t5/ONTAP-Discussions/c-mode-antivirus/m-p/94167#M19463</guid>
      <dc:creator>IANHOSKINSCNO</dc:creator>
      <dc:date>2014-10-22T15:01:14Z</dc:date>
    </item>
    <item>
      <title>Re: c-mode antivirus</title>
      <link>https://community.netapp.com/t5/ONTAP-Discussions/c-mode-antivirus/m-p/113407#M24061</link>
      <description>&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Vserver:cluster01&lt;BR /&gt;Policy: default_CIFS&lt;BR /&gt;Policy Status: off&lt;BR /&gt;Policy Config Owner: cluster&lt;BR /&gt;File-Access Protocol: CIFS&lt;BR /&gt;Filters: scan-mandatory&lt;BR /&gt;Max File Size Allowed for Scanning: 2GB&lt;BR /&gt;File Paths Not to Scan: -&lt;BR /&gt;File Extensions Not to Scan: -&lt;BR /&gt;File Extensions to Scan: *&lt;BR /&gt;Scan Files with No Extension: true&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;change previllage to &amp;nbsp;advacned mode&amp;nbsp;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;cluster01:: set -privilege advanced&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;then you should be able change the filter value for on access policy&amp;nbsp;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;cluster01::vserver vscan on-access-policy*&amp;gt; modify -vserver * -policy-name default_CIFS -filters "-"&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;you can verify it after changing&amp;nbsp;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;cluster01::vserver vscan on-access-policy*&amp;gt; show -in&lt;/P&gt;&lt;P&gt;Vserver: cluster01&lt;BR /&gt;Policy: default_CIFS&lt;BR /&gt;Policy Status: off&lt;BR /&gt;Policy Config Owner: cluster&lt;BR /&gt;File-Access Protocol: CIFS&lt;BR /&gt;Filters: -&lt;BR /&gt;Max File Size Allowed for Scanning: 2GB&lt;BR /&gt;File Paths Not to Scan: -&lt;BR /&gt;File Extensions Not to Scan: -&lt;BR /&gt;File Extensions to Scan: *&lt;BR /&gt;Scan Files with No Extension: true&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;change previllage to &amp;nbsp;admin mode&amp;nbsp;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;cluster01:: set -privilege admin&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 07 Dec 2015 15:40:15 GMT</pubDate>
      <guid>https://community.netapp.com/t5/ONTAP-Discussions/c-mode-antivirus/m-p/113407#M24061</guid>
      <dc:creator>OhmR</dc:creator>
      <dc:date>2015-12-07T15:40:15Z</dc:date>
    </item>
  </channel>
</rss>

