configuration, because update to the device does not get committed until the operation
finishes.
About Implicit Updates (Secure Access and Infranet Controller Devices Only)
Secure Access and Infranet Controller configuration data is structured such that the
creation or change of some configuration data can cause implicit change in other
configuration data. For example:
•
Resource policies can be automatically created as a result of Resource Profile
configuration.
•
Encrypted passwords are created on a Secure Access device as a result of cleartext
password configuration.
•
Bookmarks created in the Web Access Policies list (resource policies or allow rules for
certain Web sites) are created when the "auto-allow" checkbox is checked when a
Role bookmark is created.
•
Configuration of a HostChecker role restriction triggers automatic configuration of a
realm-level host checker evaluation setting.
As a result, an Update Device directive to a Secure Access or Infranet Controller device
can result in configuration data changing on the device which was not set in NSM. To
synchronize the configuration data, NSM imports the configuration after the update.
If an Update Device directive causes implicit configuration changes on one or more
devices, each device reports the event to NSM in the update device response. On receipt
of this message, NSM performs the following actions:
•
Shows the Update Device job as “Done” in the Job window.
•
Changes the configuration state on devices with implicit changes to “Managed, Device
Changed”.
•
Displays the Device Import Options popup that lists the devices with implicit
configuration changes and informs you that the configuration is being imported.
Click
OK
to close the dialog box.
•
Starts a job to import the configuration from each affected device.
Knowing When to Update
Typically, you update a device after changing the device configuration or after modifying
the security policy that is assigned to the device.
•
To overwrite the existing configuration on the physical device, update the physical
device with the modeled configuration in NSM.
•
To overwrite the modeled configuration in NSM, import the existing configuration from
the physical device. NSM does not support delta updates from the device.
Copyright © 2010, Juniper Networks, Inc.
248
Network and Security Manager Administration Guide
Содержание NETWORK AND SECURITY MANAGER 2010.4 - ADMININISTRATION GUIDE REV1
Страница 6: ...Copyright 2010 Juniper Networks Inc vi...
Страница 36: ...Copyright 2010 Juniper Networks Inc xxxvi Network and Security Manager Administration Guide...
Страница 52: ...Copyright 2010 Juniper Networks Inc 2 Network and Security Manager Administration Guide...
Страница 90: ...Copyright 2010 Juniper Networks Inc 40 Network and Security Manager Administration Guide...
Страница 146: ...Copyright 2010 Juniper Networks Inc 96 Network and Security Manager Administration Guide...
Страница 236: ...Copyright 2010 Juniper Networks Inc 186 Network and Security Manager Administration Guide...
Страница 292: ...Copyright 2010 Juniper Networks Inc 242 Network and Security Manager Administration Guide...
Страница 314: ...Copyright 2010 Juniper Networks Inc 264 Network and Security Manager Administration Guide...
Страница 368: ...Copyright 2010 Juniper Networks Inc 318 Network and Security Manager Administration Guide...
Страница 370: ...Copyright 2010 Juniper Networks Inc 320 Network and Security Manager Administration Guide...
Страница 484: ...Copyright 2010 Juniper Networks Inc 434 Network and Security Manager Administration Guide...
Страница 584: ...Copyright 2010 Juniper Networks Inc 534 Network and Security Manager Administration Guide...
Страница 588: ...Copyright 2010 Juniper Networks Inc 538 Network and Security Manager Administration Guide...
Страница 600: ...Copyright 2010 Juniper Networks Inc 550 Network and Security Manager Administration Guide...
Страница 678: ...Copyright 2010 Juniper Networks Inc 628 Network and Security Manager Administration Guide...
Страница 694: ...Copyright 2010 Juniper Networks Inc 644 Network and Security Manager Administration Guide...
Страница 700: ...Copyright 2010 Juniper Networks Inc 650 Network and Security Manager Administration Guide...
Страница 706: ...Copyright 2010 Juniper Networks Inc 656 Network and Security Manager Administration Guide...
Страница 708: ...Copyright 2010 Juniper Networks Inc 658 Network and Security Manager Administration Guide...
Страница 758: ...Copyright 2010 Juniper Networks Inc 708 Network and Security Manager Administration Guide...
Страница 788: ...Copyright 2010 Juniper Networks Inc 738 Network and Security Manager Administration Guide...
Страница 882: ...Copyright 2010 Juniper Networks Inc 832 Network and Security Manager Administration Guide...
Страница 908: ...Copyright 2010 Juniper Networks Inc 858 Network and Security Manager Administration Guide...
Страница 918: ...Copyright 2010 Juniper Networks Inc 868 Network and Security Manager Administration Guide...
Страница 920: ...Copyright 2010 Juniper Networks Inc 870 Network and Security Manager Administration Guide...
Страница 1005: ...PART 6 Index Index on page 957 955 Copyright 2010 Juniper Networks Inc...
Страница 1006: ...Copyright 2010 Juniper Networks Inc 956 Network and Security Manager Administration Guide...