You would then add and configure IDP rulebases for the security policy to detect possible
attacks against servers in the Data_Center zone.
Configuring multiple IDP policies for an MX Series Router
You can configure multiple IDP policies for an MX Series device by associating existing
IDP rules in the security policy assigned to the device, to multiple IDP policies. IDP services
on MX series routers allow administrators to provide security services to service provider
subscribers. Multiple IDP policies allow administrators to reference a service set associated
with a subscriber to a pre-configured IDP policy. This IDP policy is used to enforce security
inspection for traffic per subscriber. Service set configuration is supported in-device in
MX series devices and IDP policies can be associated with service sets using the
configuration node
Services > Service Interface Pool > Service Set
.
To create a new IDP policy:
•
1. In the main navigation tree, select Policies, then double-click the policy name in the
Security Policies window. The Security Policy window appears.
•
2. Select the IDP tab in the Security Policy window.
•
3. Click
Add
in the Policies panel.
•
4. Enter a name for the policy and comments if desired, in the pop-up menu, and click
OK
. The new IDP policy is added to the Policies panel.
To add rules to the IDP policy:
•
1. In the main navigation tree, select
Security Policies
, then double-click the policy
name in the Security Policies window. The Security Policy window appears.
•
2. Select the
IDP
tab in the Security Policy window.
•
4. Right-click on the policy name in the Policies panel and select
Add Rule
. The rule
will be added to the IDP policy.
NOTE:
If you select an IDP rule associated with multiple IDP policies from the IDP rule
table in a Security Policy window, the Policies panel displays the multiple IDP policies
to which the rule is associated.
To remove rules from the IDP policy:
•
1. In the main navigation tree, select
Security Policies
, then double-click the policy
name in the Security Policies window. The Security Policy window appears.
•
2. Select the
IDP
tab in the Security Policy window.
•
3. Select a rule from the IDP rule table.
•
4. Right-click on the policy that includes the rule in the Policies panel, and select
Remove Rule
. The rule will be removed from the corresponding IDP policy in the Policies
panel but will remain in the IDP rule table.
475
Copyright © 2010, Juniper Networks, Inc.
Chapter 9: Configuring Security Policies
Содержание NETWORK AND SECURITY MANAGER 2010.3
Страница 6: ...Copyright 2010 Juniper Networks Inc vi...
Страница 36: ...Copyright 2010 Juniper Networks Inc xxxvi Network and Security Manager Administration Guide...
Страница 52: ...Copyright 2010 Juniper Networks Inc 2 Network and Security Manager Administration Guide...
Страница 90: ...Copyright 2010 Juniper Networks Inc 40 Network and Security Manager Administration Guide...
Страница 144: ...Copyright 2010 Juniper Networks Inc 94 Network and Security Manager Administration Guide...
Страница 146: ...Copyright 2010 Juniper Networks Inc 96 Network and Security Manager Administration Guide...
Страница 234: ...Copyright 2010 Juniper Networks Inc 184 Network and Security Manager Administration Guide...
Страница 310: ...Copyright 2010 Juniper Networks Inc 260 Network and Security Manager Administration Guide...
Страница 364: ...Copyright 2010 Juniper Networks Inc 314 Network and Security Manager Administration Guide...
Страница 366: ...Copyright 2010 Juniper Networks Inc 316 Network and Security Manager Administration Guide...
Страница 478: ...Copyright 2010 Juniper Networks Inc 428 Network and Security Manager Administration Guide...
Страница 576: ...Copyright 2010 Juniper Networks Inc 526 Network and Security Manager Administration Guide...
Страница 580: ...Copyright 2010 Juniper Networks Inc 530 Network and Security Manager Administration Guide...
Страница 592: ...Copyright 2010 Juniper Networks Inc 542 Network and Security Manager Administration Guide...
Страница 684: ...Copyright 2010 Juniper Networks Inc 634 Network and Security Manager Administration Guide...
Страница 690: ...Copyright 2010 Juniper Networks Inc 640 Network and Security Manager Administration Guide...
Страница 696: ...Copyright 2010 Juniper Networks Inc 646 Network and Security Manager Administration Guide...
Страница 698: ...Copyright 2010 Juniper Networks Inc 648 Network and Security Manager Administration Guide...
Страница 748: ...Copyright 2010 Juniper Networks Inc 698 Network and Security Manager Administration Guide...
Страница 778: ...Copyright 2010 Juniper Networks Inc 728 Network and Security Manager Administration Guide...
Страница 870: ...Copyright 2010 Juniper Networks Inc 820 Network and Security Manager Administration Guide...
Страница 872: ...Copyright 2010 Juniper Networks Inc 822 Network and Security Manager Administration Guide...
Страница 898: ...Copyright 2010 Juniper Networks Inc 848 Network and Security Manager Administration Guide...
Страница 908: ...Copyright 2010 Juniper Networks Inc 858 Network and Security Manager Administration Guide...
Страница 910: ...Copyright 2010 Juniper Networks Inc 860 Network and Security Manager Administration Guide...
Страница 995: ...PART 6 Index Index on page 947 945 Copyright 2010 Juniper Networks Inc...
Страница 996: ...Copyright 2010 Juniper Networks Inc 946 Network and Security Manager Administration Guide...