configuration, because update to the device does not get committed until the operation
finishes.
About Implicit Updates (Secure Access and Infranet Controller Devices Only)
Secure Access and Infranet Controller configuration data is structured such that the
creation or change of some configuration data can cause implicit change in other
configuration data. For example:
•
Resource policies can be automatically created as a result of Resource Profile
configuration.
•
Encrypted passwords are created on a Secure Access device as a result of cleartext
password configuration.
•
Bookmarks created in the Web Access Policies list (resource policies or allow rules for
certain Web sites) are created when the "auto-allow" checkbox is checked when a
Role bookmark is created.
•
Configuration of a HostChecker role restriction triggers automatic configuration of a
realm-level host checker evaluation setting.
As a result, an Update Device directive to a Secure Access or Infranet Controller device
can result in configuration data changing on the device which was not set in NSM. To
synchronize the configuration data, NSM imports the configuration after the update.
If an Update Device directive causes implicit configuration changes on one or more
devices, each device reports the event to NSM in the update device response. On receipt
of this message, NSM performs the following actions:
•
Shows the Update Device job as “Done” in the Job window.
•
Changes the configuration state on devices with implicit changes to “Managed, Device
Changed”.
•
Displays the Device Import Options popup that lists the devices with implicit
configuration changes and informs you that the configuration is being imported.
Click
OK
to close the dialog box.
•
Starts a job to import the configuration from each affected device.
Knowing When to Update
Typically, you update a device after changing the device configuration or after modifying
the security policy that is assigned to the device.
•
To overwrite the existing configuration on the physical device, update the physical
device with the modeled configuration in NSM.
•
To overwrite the modeled configuration in NSM, import the existing configuration from
the physical device. NSM does not support delta updates from the device.
Copyright © 2010, Juniper Networks, Inc.
244
Network and Security Manager Administration Guide
Содержание NETWORK AND SECURITY MANAGER 2010.3
Страница 6: ...Copyright 2010 Juniper Networks Inc vi...
Страница 36: ...Copyright 2010 Juniper Networks Inc xxxvi Network and Security Manager Administration Guide...
Страница 52: ...Copyright 2010 Juniper Networks Inc 2 Network and Security Manager Administration Guide...
Страница 90: ...Copyright 2010 Juniper Networks Inc 40 Network and Security Manager Administration Guide...
Страница 144: ...Copyright 2010 Juniper Networks Inc 94 Network and Security Manager Administration Guide...
Страница 146: ...Copyright 2010 Juniper Networks Inc 96 Network and Security Manager Administration Guide...
Страница 234: ...Copyright 2010 Juniper Networks Inc 184 Network and Security Manager Administration Guide...
Страница 310: ...Copyright 2010 Juniper Networks Inc 260 Network and Security Manager Administration Guide...
Страница 364: ...Copyright 2010 Juniper Networks Inc 314 Network and Security Manager Administration Guide...
Страница 366: ...Copyright 2010 Juniper Networks Inc 316 Network and Security Manager Administration Guide...
Страница 478: ...Copyright 2010 Juniper Networks Inc 428 Network and Security Manager Administration Guide...
Страница 576: ...Copyright 2010 Juniper Networks Inc 526 Network and Security Manager Administration Guide...
Страница 580: ...Copyright 2010 Juniper Networks Inc 530 Network and Security Manager Administration Guide...
Страница 592: ...Copyright 2010 Juniper Networks Inc 542 Network and Security Manager Administration Guide...
Страница 684: ...Copyright 2010 Juniper Networks Inc 634 Network and Security Manager Administration Guide...
Страница 690: ...Copyright 2010 Juniper Networks Inc 640 Network and Security Manager Administration Guide...
Страница 696: ...Copyright 2010 Juniper Networks Inc 646 Network and Security Manager Administration Guide...
Страница 698: ...Copyright 2010 Juniper Networks Inc 648 Network and Security Manager Administration Guide...
Страница 748: ...Copyright 2010 Juniper Networks Inc 698 Network and Security Manager Administration Guide...
Страница 778: ...Copyright 2010 Juniper Networks Inc 728 Network and Security Manager Administration Guide...
Страница 870: ...Copyright 2010 Juniper Networks Inc 820 Network and Security Manager Administration Guide...
Страница 872: ...Copyright 2010 Juniper Networks Inc 822 Network and Security Manager Administration Guide...
Страница 898: ...Copyright 2010 Juniper Networks Inc 848 Network and Security Manager Administration Guide...
Страница 908: ...Copyright 2010 Juniper Networks Inc 858 Network and Security Manager Administration Guide...
Страница 910: ...Copyright 2010 Juniper Networks Inc 860 Network and Security Manager Administration Guide...
Страница 995: ...PART 6 Index Index on page 947 945 Copyright 2010 Juniper Networks Inc...
Страница 996: ...Copyright 2010 Juniper Networks Inc 946 Network and Security Manager Administration Guide...