4.9.2 Nutanix Files
Overview
Nutanix Files supports the Internet Content Adaptation Protocol (ICAP) to enable communication with MetaDefender ICAP Server. ICAP Server can scan files stored on file shares in real time when files are opened, closed, read from, or written to.
Nutanix Files performs the following task when working with ICAP Server:
-
A client requests to read, write, open, or close a file.
-
Files determines that the file requires scanning.
-
Files sends files that require scans to the ICAP Server and with a scan request.
-
The ICAP Server scans the file and reports the scan results to Files.
-
Files quarantines and denies access to unsafe files.
-
If the file is clean or disarmed & reconstructed, then Files allows the client access to the file.
Further reading
For details about ICAP Server configuration in Nutanix Files see the Nutanix Files Guide.
Configuration
Disabled by default
By default, shares have antivirus scan disabled. After configuring the antivirus scan, you must enable the scan for each share that you want scanned.
More ICAP Servers recommended
Nutanix recommends two or more MetaDefender ICAP Servers for each share.
Configure scanning
To configure scanning for SMB shares:
-
Log on to the Prism web console and go to Home > File Server.
-
In the action links, click Antivirus settings. The Antivirus window appears.
-
Click + Connect ICAP Server
-
Enter the IP address or hostname of ICAP Server.
-
Enter the ICAP Server port number. The default port is 1344.
-
Click Save.
-
Ensure the connection status automatically updates to OK. For a detected antivirus server, the software tests the validity of the configured server and updates the status to OK.
012ec5a8-8168-4a71-aec3-b75f584cacce -
Click Next.
-
-
Complete the Scan Settings. Override settings for individual shares through the share-level antivirus settings.
-
Scan on Write: Scans saved and updated files (a write operation).
-
Scan on Read: Scans opened files (read operation).Nutanix recommends to always enable Scan on Read.
-
Click Save.
-
ICAP Server parameter |
Description |
Values |
IP Addresses |
Displays the IP addresses for the ICAP servers. |
(IP addresses) |
Port |
Displays the port number. |
(port number) |
Description |
Displays the server description (if one was included when the server was added). |
(text string) |
Files Scanned |
Displays the number of files scanned by the server. |
(integer) |
Disconnect Count |
Displays the number of times the server disconnected. |
(integer) |
Avg Latency (ms) |
Displays the average response latency. |
xx [ms] |
Connection Status |
Indicates whether the server is connected. |
[Yes|No] |
Action |
Click the pencil icon to edit the server configuration or the X icon to delete it. |
n/a |
Enable scanning
Disabled by default
By default, shares have antivirus scan disabled.
To enable scanning on each share:
-
From the Home page, go to File Server > Share.
-
Select the share from the list and click Antivirus Settings. The antivirus setup window displays.
-
Check the box Enable antivirus scan for this share.
-
Click Save.