Idp Sensor Placement; Idp Sensor Deployment Mode; Idp Individual Deployment Modes - Juniper IDP 600 Series Installer's Manual

Table of Contents

Advertisement

IDP 50, 200, 600, 1100 Installer's Guide
NOTE:

IDP Sensor Placement

IDP Sensor Deployment Mode

IDP Individual Deployment Modes

12
IDP Sensor Placement
6. Configure the IDP Sensor using the ACM. See Configuring the IDP Sensor on
page 23.
7. Install the Management Server software. See Installing the IDP Management
Server Software on page 27.
8. Install the IDP User Interface software on one or more Windows or Linux PCs.
See Installing and Running the User Interface on page 31.
9. Add the IDP Sensor as a network object, update the attack objects, create a
policy, and apply the policy. See the
You must update your attack objects to get the up-to-date protection.
One step in setting up IDP on your network is to decide on a deployment mode.
The figures on the following pages illustrate the possible deployment modes and
their primary advantages and disadvantages.
Juniper Networks IDP Sensor is an ideal solution to be implemented inline between
gateway firewalls and DMZ or internal networks. IDP Sensor placement is an
important part of the installation.
You should choose a location for your IDP Sensor based on your existing network
hardware and the networks you want to protect. The examples provided in this
guide place the IDP Sensor behind the firewall or router.
IDP Sensors can be installed individually or in High Availability (HA) clusters of two
or more.
For configurations without high availability, you can deploy the IDP Sensor as an
active gateway or as a passive sniffer.
Passive Sniffer. To use an IDP Sensor as a passive intrusion detection system
without prevention capabilities, deploy the Sensor in passive sniffer mode to
monitor and log network traffic. If the Sensor is attached to a network switch,
you must configure the switch to mirror all traffic to that port. The IDP Sensor
defaults to sniffer mode.
Active Gateway (Inline). Active Gateway modes take full advantage of IDP
attack prevention capabilities and MultiMethod Detection mechanisms.
Normally, inline Sensors are configured in Transparent mode. For other inline
modes, see Advanced Configuration on page 45.
Choose a deployment mode based on the information in the following pages, then
proceed to the next chapter.
IDP Concepts and Examples Guide
.

Advertisement

Table of Contents
loading

Table of Contents