Avira ANTIVIR UNIX WEBGATE User Manual

User Manual
Avira AntiVir WebGate Avira WebGate Suite
www.avira.com
Contents
1.1 Introduction ............................................................................................................................................... 3
1.2 The Structure of the Manual ..................................................................................................................... 4
1.3 Signs and Symbols...................................................................................................................................... 4
1.4 Abbreviations ............................................................................................................................................. 5
Chapter 2. Product Information ....................................................................... 7
2.1 Features ...................................................................................................................................................... 8
2.2 Licensing Concept ...................................................................................................................................... 8
2.3 Modules and Operating Mode of AntiVir WebGate................................................................................. 9
2.4 System Requirements .............................................................................................................................. 10
Chapter 3. Installation ................................................................................... 11
3.1 Choosing the WebGate Computer........................................................................................................... 11
3.2 Getting the Installation Files................................................................................................................... 11
3.3 Licensing................................................................................................................................................... 12
3.4 Installing AntiVir WebGate ..................................................................................................................... 13
3.5 Reinstalling AntiVir WebGate ................................................................................................................. 17
3.6 Installing AntiVir WebGate Using the Graphical User Interface........................................................... 18
Chapter 4. Configuration ................................................................................ 25
4.1 Overview................................................................................................................................................... 26
4.2 Monitoring HTTP Traffic......................................................................................................................... 26
4.3 Monitoring FTP Traffic............................................................................................................................ 30
4.4 Integration over ICAP Interface .............................................................................................................. 32
4.5 Configuration Files .................................................................................................................................. 34
4.5.1Configuration File avwebgate.conf 34
4.5.2Configuration File avupdater.conf 41
4.5.3Configuration File avwebgate.acl 42
4.6 Configuration Script ................................................................................................................................ 43
4.7 Regular Updates Configuration............................................................................................................... 44
4.7.1Configuring Automatic Updates through Internet Updater 46
4.7.2Performing Cron Updates 48
4.8 Verifying Updates Authenticity with GnuPG ......................................................................................... 49
4.9 Templates Configuration......................................................................................................................... 50
4.10 Testing AntiVir WebGate...................................................................................................................... 51
Chapter 5. Operating ...................................................................................... 53
5.1 Starting and Stopping AntiVir WebGate manually................................................................................ 53
5.2 Procedures when Detecting Viruses or Unwanted Programs................................................................ 54
Chapter 6. Graphical User Interface (GUI) ....................................................... 55
6.1 Overview................................................................................................................................................... 55
6.2 Operating AntiVir WebGate Using the GUI ........................................................................................... 56
6.3 Configuring AntiVir WebGate Using the GUI ........................................................................................ 62
6.4 Updating WebGate Using the GUI .......................................................................................................... 71
6.5 Configuring AntiVir Updater Using the GUI .......................................................................................... 73
Chapter 7. Service .......................................................................................... 77
7.1 Support ..................................................................................................................................................... 77
7.2 Online Shop.............................................................................................................................................. 77
7.3 Contact...................................................................................................................................................... 78
Avira GmbH AntiVir WebGate 1
Chapter 8. Appendix ....................................................................................... 79
8.1 Glossary .................................................................................................................................................... 79
8.2 Further Information ................................................................................................................................ 80
8.3 Golden Rules for Protection Against Viruses ......................................................................................... 81
2 AntiVir WebGate Avira GmbH
About this Manual

1About this Manual

In this Chapter you can find an overview of the structure and contents of this manual.
After a short introduction, you can read information about the following issues:
z The Structure of the Manual – Page 4
z Signs and Symbols – Page 4

1.1 Introduction

We have enclosed in this manual all the information you need about AntiVir WebGate and it will guide you step by step through installation, configuration and operation of the software.
The appendix contains a Glossary, which explains the basic terms.
The RELEASE_NOTES file included in the product kit presents additional current information about AntiVir WebGate.
For further information and assistance, please refer to our Website, to the Hotline of our Technical Support and to our regular Newsletter (see Service – Page 77).
Your Avira Team
Avira GmbH AntiVir WebGate 3

1.2 The Structure of the Manual

The manual of your AntiVir software consists in a number of Chapters, bringing you the following information:
Chapter Contents
1 About this Manual The structure of the manual, signs and symbols
2 Product Information General information about AntiVir WebGate
3 Installation Instructions to install AntiVir WebGate on your
4 Configuration Directions for optimal settings of AntiVir
5 Operating Working with AntiVir WebGate; Reactions
About this Manual
software, its modules, features, system requirements and licensing
system
WebGate on your system
when detecting viruses and unwanted programs
6 Graphical User Interface (GUI)
7 Service Avira GmbH Support and Service
8 Appendix Glossary of technical terms and abbreviations

1.3 Signs and Symbols

The manual uses the following signs and symbols:
Symbol Meaning
3
... shown before a step you have to perform
General information about GUI; Operation and configuration of AntiVir WebGate using the GUI
Golden Rules for Protection against Viruses
... shown before a condition that must be met, prior to performing an action
... shown before the result that directly follows the preceding action ... shown before a warning in case there is a danger of critical data loss or hardware damage
... shown before a note containing particularly important information, e.g. on the steps to be followed
... shown before a tip that makes it easier to understand and use AntiVir WebGate
4 AntiVir WebGate Avira GmbH
About this Manual
For improved legibility and clear marking, the following types of emphasis will also be used in the text:
Emphasis in text Explanation
Ctrl+Alt Key or key combination
/usr/lib/AntiVir/antivir
ls /usr/lib/AntiVir
Choose component Select all
http://www.avira.com URLs
Signs and Symbols – Page 4 Cross-reference within the document

1.4 Abbreviations

The manual uses the following abbreviations:
Abbreviation Meaning
ACL Access Control List
FTP File Transfer Protocol
GUI Graphical User Interface
HTTP Hypertext Transfer Protocol
Path and filename
User entries
Elements of the software interface such as menu items, window titles and buttons in dialog windows
HTTPS Hypertext Transfer Protocol Secure
ICAP Internet Content Adaptation Protocol
PMS Possible Malicious Software
SMTP Simple Mail Transfer Protocol
SNEWS Secure NEWs Server
SSL Secure Sockets Layer
VDF Virus Definition File
Avira GmbH AntiVir WebGate 5
About this Manual
6 AntiVir WebGate Avira GmbH
Product Information

2Product Information

Internet connection is an underestimated invasion doorway for malware on your computer. If you transfer unfiltered data from the Internet on your system, you can spread all types of malware throughout the entire network.
AntiVir WebGate is a reliable protection for your computer, by scanning, filtering and if necessary blocking access to all files from the Internet.
Furthermore, AntiVir WebGate also scans the entire outgoing traffic.
Usually company computers access the Internet indirectly, via a proxy server. AVIRA WebGate co-operates with the proxy server and completes it in an ideal way.
Right from the beginning, two really important hints:
Losing valuable files usually has dramatic consequences. Not even the best antivirus software can fully protect you against file loss.
Ensure regular backups for your files.
An antivirus program can be reliable and effective only if kept up-to-date.
Ensure that you maintain your AntiVir WebGate up-to-date, using Automatic Updates. You will learn how to do it in this user guide.
Avira GmbH AntiVir WebGate 7

2.1 Features

AntiVir WebGate supports a variety of configuration settings for controlling Internet data transfer. The essential features are:
NEW: Extended access control, for setting rules to allow tunneling for certain
NEW: URL filtering, using the categories in Avira Web Access and Content
Real-time scanning for viruses/unwanted programs
Heuristic detection of macroviruses
Scanning all downloaded files (HTTP and FTP)
Scanning all outgoing files (e. g. PUT and POST)
Simple installation and configuration: supported by intuitive scripts and
Recognition of all common archive types
Automatic Internet Update for the scan engine and VDF
Configurable notification functions for the administrator (protocol, warnings,
Self-Integrity Program Check, which ensures the antivirus system is operating
Optional: user-friendly graphic interface (GUI) for operating and configuring
Access control to WebGate using IP addresses
ICAP support (enables connection through ICAP interface)
Product Information
types of requests and responses.
Control library (available in Avira AntiVir WebGate Suite)
graphical user interface (GUI)
reports); sending email warnings (SMTP)
correctly
AntiVir WebGate

2.2 Licensing Concept

You must have a license to use AntiVir WebGate. You are required to accept the license terms (see http://www.avira.com/documents/general/pdf/en/avira_eula_en.pdf).
There are different license models for using the various functions of AntiVir WebGate:
z Demo version
z Full version
z Comfort pack
The license depends upon the number of users in the network, which are to be protected by AntiVir WebGate.
The license is given in a license file named hbedv.key . You will receive it by email from Avira GmbH. It contains certain data, such as the programs you will use and the time interval of your license. The same license file may refer to more Avira products.
8 AntiVir WebGate Avira GmbH
Product Information
Demo Version
Evaluation
Ver sion
Full Version
Comfort Pack
The Demo Version detects and reports only the EICAR test-virus. There is no possibility to block the access to infected files.
Details about the Evaluation Version can be found on our Website:
http://www.avira.com.
The range of Full Version features includes:
z Provision of AntiVir WebGate Versions by Internet download
z License file by email, for activating the Demo Version to a Full Version
z Complete installation instructions (digital)
z PDF manuals available for Internet download
z Four weeks Installation Support, starting from acquisition date
z Newsletter Service (per email)
z Internet Update Service for program files and VDF
In addition to the Full Version license, the Comfort Pack includes:
z Every three months: free delivery of a boot-CD-ROM with the AntiVir Rescue
System and all updated AntiVir products
z Complete installation manual (printed) on first delivery
z License file on a floppy with the first delivery
z Newsletter Service (printed, regular mail delivery)

2.3 Modules and Operating Mode of AntiVir WebGate

AntiVir WebGate security software consists in the following modules:
z AntiVir Search Engine
z Internet Updater
z WebGate Main Program
z Graphical User Interface (GUI) for AntiVir WebGate
z Avira Web Access and Content Control library
AntiVir Search Engine
AntiVir Search Engine essentially represents the scanning and repairing modules of Avira software. These are also used by the other AntiVir products.
Internet Updater
The Internet Updater searches over the Internet and automatically updates your AntiVir product, if necessary. This ensures that your programs are always kept up­to-date.
Avira GmbH AntiVir WebGate 9
WebGate Main Program
The Main Program is the actual WebGate function, supervising the HTTP and FTP network access over the Internet. It detects viruses and unwanted programs using the AntiVir Search Engine.
GUI for AntiVir WebGate
The graphical user interface (GUI) assists you in operating and configuring AntiVir WebGate and graphically displays the monitoring process. However, AntiVir WebGate is fully configurable and functioning even without a GUI.
You need Java 1.4.0 or later, in order to use the GUI.
Avira Web Access and Content Control library
WebGate allows clients to filter outgoing requests based on URL categories, such as Violence, Gambling, Erotic etc. To determine the categories for a certain URL, the Web Access and Content Control library is used. (This module is only activated with the license for Avira AntiVir WebGate Suite.)
Product Information
To find out more details about the Web Access and Content Control library, please refer to the Manual file within the WebGate installation directory.

2.4 System Requirements

AntiVir WebGate asks for the following minimum system requirements:
z Computer i386
z HD: 100 MB (1 GB or more recommended)
z RAM: 256 MB (1280 MB for Solaris)
z Linux; FreeBSD (Intel); OpenBSD (Intel) or Sun Solaris
Running AntiVir software on FreeBSD 6.x requires installing the compat5x distribution.
If you want to use the GUI:
z Java 1.4.0 or newer
10 AntiVir WebGate Avira GmbH
Installation

3 Installation

You can find the current version of AntiVir WebGate on our website.
AntiVir WebGate is supplied as packed archive. This archive contains the AntiVir Search Engine, the Internet Updater, the WebGate Main Program and the graphical user interface (GUI) for WebGate.
The graphical installation is also possible when using the Installation CD-ROM.
You are guided through the installation process, step-by-step. This Chapter is composed of the following Sections:
z Choosing the WebGate Computer – Page 11
z Getting the Installation Files – Page 11
z Licensing – Page 12
z Installing AntiVir WebGate – Page 13
z Reinstalling AntiVir WebGate – Page 17
z Installing AntiVir WebGate Using the Graphical User Interface – Page 18

3.1 Choosing the WebGate Computer

Depending on network and hardware configuration, there are more possibilities for choosing an AntiVir WebGate computer, as a “guard” between the user’s client and the Internet.
A connection to the proxy server is especially needed, for ensuring a controlled Internet access.
AntiVir WebGate is adjusted first in terms of network configuration (see
Configuration – Page 25). At the time of the installation, it must be decided on
which computer WebGate will be installed.

3.2 Getting the Installation Files

Downloading the Installation Files from the Internet
Download the current version file from our Website
http://www.avira.com/en/downloads/avira_antivir_unix_webgate.html
on your local computer. The file name is
antivir-webgate-prof-<version>.tar.gz.
Save the file in a /tmp folder on the computer, on which you want to run WebGate.
Avira GmbH AntiVir WebGate 11
Getting the Installation Files from CD-ROM
On the CD-ROM, open
/EN/PRODUCTS/UNIX/WEBGATE/ or /EN/PRODUCTS/UNIX/GUI_INSTALLERS/.
Copy the file
antivir-webgate-prof-<version>.tar.gz in a directory, for example in
/tmp.
Unpacking Program Files
Go to the temporary directory
cd /tmp
Unpack the
tar -xzvf antivir-webgate-prof-<version>.tar.gz
AntiVir archive:
in the temporary directory will then appear antivir-webgate-prof-<version> .
:
Installation

3.3 Licensing

You must have a license for AntiVir WebGate, in order to use the program (see
Licensing Concept – Page 8). The license comes in a file named hbedv.key.
This license file contains information regarding the range and period of the license. Without the license file, AntiVir WebGate runs only as Demo Version, with restricted features.
Purchasing the License
You may contact us by telephone or by email
license file for AntiVir WebGate.
You will receive the license file by email.
You can easily acquire AntiVir WebGate using our Online Shop (for details, visit
http://www.avira.com).
Copying the License File
Copy the license file hbedv.key in the installation directory on your system:
/tmp/antivir-webgate-prof-<version>.
(info@avira.com), for acquiring a
You can also perform the installation without having a license key from the beginning. AntiVir WebGate will then run as Demo Version.
You can copy the license file anytime in the AntiVir program directory
/usr/lib/AntiVir .
12 AntiVir WebGate Avira GmbH
Installation

3.4 Installing AntiVir WebGate

AntiVir WebGate installation is performed automatically using an installation script. This script performs the following tasks:
z Checks integrity of the installation files
z Checks for the required permissions for installation
z Checks for existing installed versions of AntiVir products on the computer
z Copies the program files and overwrites the existing obsolete files
z Copies the configuration files. Existing AntiVir configuration files are kept
z Optionally: installs Internet Updater
z Optionally: installs WebGate GUI
z Optionally: configures the automatic start of AntiVir WebGate or of the
Internet Updater
For the first installation, you must follow these steps:
z Preparing Installation – Page 13
z Installing AntiVir WebGate – Page 13
Preparing Installation
Login as root. Otherwise you don’t have the required authorization for the installation and the script returns an error message.
Go to the directory where you have unpacked AntiVir WebGate:
cd /tmp/antivir-webgate-prof-<version>
Installing AntiVir WebGate
Depending on the AntiVir products you have already installed on your computer, the installation procedure may vary.
Engine
Type:
./install
Confirm the License Agreement.
Avira GmbH AntiVir WebGate 13
Installation
The installation script starts. First, the AntiVir Search Engine is copied:
1) installing AntiVir Engine
copying bin/antivir to /usr/lib/AntiVir/ ... done
copying vdf/antivir0.vdf to /usr/lib/AntiVir/ ... done
copying vdf/antivir1.vdf to /usr/lib/AntiVir/ ... done
copying vdf/antivir2.vdf to /usr/lib/AntiVir/ ... done
copying vdf/antivir3.vdf to /usr/lib/AntiVir/ ... done
installation of AntiVir Engine complete
Then you are asked if you want to install the Internet update daemon:
2) installing internet update daemon ... Would you like to install the internet update daemon? [n]
You do not need the Internet update daemon for performing updates. You can use the command antivir --update anytime, for manual updates over the Internet.
Installation
with update
daemon
However, for the first installation it is recommended that you install the daemon. You can deactivate it later in the configuration.
If you want to install the Internet update daemon (recommended):
Type Y. The daemon is installed. Then you are asked if you want to create a link to
avupdater and if the Updater should be automatically activated at system
start:
copying script/avupdater to /usr/lib/AntiVir/ ... done
checking for existing /etc/avupdater.conf ... not found
copying etc/avupdater.conf to /etc/ ... done
Would you like to create a link in /usr/sbin for avupdater ? [y]
linking /usr/sbin/avupdater to /usr/lib/AntiVir/avupdater ... done
Would you like the internet update daemon to start automatically? [y]
Confirm with Enter. You can change these settings later.
The automatic system start is configured:
setting up startup script ... done
installation of the internet update daemon complete
Installation
without update
daemon
If you want to install the Internet update daemon later or never at all:
Type N or press Enter.
14 AntiVir WebGate Avira GmbH
Installation
WebGate Main
Program
The files for WebGate main program are copied. You will be asked if you want to create a link in /usr/sbin
3) installing main program
copying doc/avwebgate_en.pdf to /usr/lib/AntiVir/ ... done
copying bin/avwebgate.bin to /usr/lib/AntiVir/ ... done
copying script/avwebgate to /usr/lib/AntiVir/ ... done
creating /usr/lib/AntiVir/templates ... done
creating /usr/lib/AntiVir/templates/examples ... done
creating /usr/lib/AntiVir/templates/examples/en ... done
creating /usr/lib/AntiVir/templates/examples/de ... done
installing example templates to /usr/lib/AntiVir/templates ... de en
copying doc/MANUAL to /usr/lib/AntiVir/MANUAL.avwebgate ... done
Would you like to create a link in /usr/sbin for avwebgate ? [y]
If you do not want to create a link:
Type N or press Enter.
GUI
installation
Then you are asked if you want WebGate to start automatically:
Would you like AvWebGate to start automatically? [y]
Confirm with Enter. You can later modify this setting.
The automatic system start is configured:
setting up startup script ... done installation of main program complete
Then you are asked if you want to install WebGate with the optional graphic user interface (GUI).
4) installing GUI (+ SMC support)
Note: The AntiVir Security Management Center (SMC) requires this
feature, even if you do not intend to use the GUI.
This product comes with a GUI that allows you to monitor realtime
activity, view logs, and configure the product. This tool is optional
(not required) for the product to run.
The GUI requires Java 1.4.x or higher.
Would you like to install the GUI (+ SMC support)? [y]
AntiVir WebGate is completely functioning and fully configurable, even without the graphic user interface.
Avira GmbH AntiVir WebGate 15
If you wish to install the GUI:
3 You must have Java 1.4.x or higher installed on the computer.
Type Y or confirm with Enter.
The GUI program files are copied:
checking for existing /etc/avwebgate.conf ... not found
copying etc/avwebgate.conf-gui to /etc/avwebgate.conf ... done
copying common gui files to /usr/lib/AntiVir/gui ... done
copying platform dependant gui files to /usr/lib/AntiVir/gui ... done
copying script/antivir-gui to /usr/lib/AntiVir/ ... done
linking /usr/bin/antivir-gui to /usr/lib/AntiVir/antivir-gui ... done
copying smcpkg/libuxwgt.so.linux_glibc22 to /usr/lib/AntiVir/agent/libux­wgt.so ... done
installation of GUI complete
Installation
Updater
configuration
The following question is about AntiVir Updater configuration:
5) configuring AntiVir Updater
Your connection to the internet might require special configuration
settings (such as HTTP proxy settings). You may also want the
updater to log to specific files or send email notification. You
now have the opportunity to set these options.
Would you like to configure the AntiVir updater now? [y]
If you answer Y, the configuration script starts. You can also do this later – using the script or the GUI. It is recommended that you first get acquainted with the configuration possibilities and then perform it (see Configuration – Page 25).
Answer N.
In the end you will see a report, confirming that the installation was
completed successfully:
Installation of the following features complete: AntiVir Engine AntiVir Internet Update Daemon AntiVir WebGate AntiVir GUI
16 AntiVir WebGate Avira GmbH
Installation

3.5 Reinstalling AntiVir WebGate

You can launch the installation script anytime. There are more situations possible:
z Installing a new version (Upgrade). The installation script checks the prior ver-
sion and installs the necessary new components. The configuration file settings already made are not overwritten, but inherited (see Configuration – Page 25).
z Later installation of some components, e. g. Internet Updater or GUI.
z Activating or deactivating the automatic start of AntiVir WebGate or Internet
Updater.
AntiVir WebGate reinstallation
The procedure is the same in all listed cases:
Go to the temporary directory where you have unpacked AntiVir WebGate:
cd /tmp/antivir-webgate-prof-<version>
Type:
./install
The installation script runs as described above (see Installing AntiVir
WebGate – Page 13).
Make the necessary changes during installation.
AntiVir WebGate is installed, with the desired settings.
Avira GmbH AntiVir WebGate 17
Installation

3.6 Installing AntiVir WebGate Using the Graphical User Interface

If you are using an installation CD, you can comfortably install AntiVir WebGate using a graphical installation routine. The file name is
antivir-webgate-<version>-gui_installer.tar.gz
in /EN/PRODUCTS/UNIX/GUI_INSTALLERS on the CD-ROM.
The graphical installation routine serves only for installation. It is not related to the GUI, which enables the operation and configuration of AntiVir WebGate.
The graphical installation routine for AntiVir WebGate runs only on Linux. It requires Java 1.4.0 or higher.
3 The program file is unpacked and saved in the directory:
/tmp/antivir-webgate-<version>-gui_installer.
Open the directory and type:
./install
A welcome text with a short description of the program appears:
Click Next.
You will see the license terms window:
In order to continue the installation, you have to accept the License Agreement. If
Disagree is active, the installation can not continue.
Select Agree and click Next.
The following window is displayed:
18 AntiVir WebGate Avira GmbH
Installation
You have three possibilities to install WebGate:
z Express setup: The program is installed with basic settings.
z Custom setup: The program is installed according to the user’s options.
Express setup
z GUI only: Only the GUI is installed in /usr/lib/AntiVir .
The program is installed with the following basic settings:
z "WebGate" (Main Program) and "AntiVir" (AntiVir Search Engine) are installed
in the directory:
/usr/lib/AntiVir
z The automatic Internet Updater is not installed.
z GUI support is activated.
z WebGate will start automatically when booting.
z The license file is not copied, meaning that AntiVir WebGate runs as demo
version.
Select Express setup and click Next.
All settings and further instructions appear in a window.
Click Install.
The program is installed.
Custom setup
You can install the program with user-defined settings.
Select Custom setup and click Next.
Avira GmbH AntiVir WebGate 19
Installation
The following window asks if you want to activate the GUI (entry in the file
avwebgate.conf):
Select Yes or No and click Next.
Then you must specify if you want to install the automatic Internet Updater:
If you wish to install the Internet Updater:
Select Yes and click Next (in this case, you are asked if you want the Internet Updater to start automatically by computer boot).
The next window asks if the license file is to be copied:
20 AntiVir WebGate Avira GmbH
Installation
Select the license file with Choose and click Next.
The next window asks if WebGate should start automatically by computer
boot:
Select Yes or No and click Next.
An optional question asks if the Internet Updater should start automatically:
Avira GmbH AntiVir WebGate 21
Select Yes or No and click Next.
A window will display the settings and further instructions:
Installation
Click Install.
The program will be installed.
GUI only
Choose this option, if you wish to install only the GUI.
Select GUI only and click Next.
The GUI is installed in the following directory:
/usr/lib/AntiVir
All settings and further instructions appear in a window.
Click Install.
GUI is installed.
22 AntiVir WebGate Avira GmbH
Installation
Completing the Installation
Following any installation type you selected, a window will list the performed installation steps:
Click Next.
You will see the following window:
If you want to start the GUI directly:
Activate the option Start GUI now and click Done.
The installation is completed.
Avira GmbH AntiVir WebGate 23
Installation
24 AntiVir WebGate Avira GmbH
Loading...
+ 58 hidden pages