Configuring Secure Web Access For The Srx 210 Services Gateway; Srx 210 Services Gateway Secure Web Access Overview; Generating Ssl Certificates For The Srx 210 Services Gateway - Juniper SRX 210 Services Hardware Manual

Services gateway
Hide thumbs Also See for SRX 210 Services:
Table of Contents

Advertisement

Chapter 11
Configuring Secure Web Access for the
SRX 210 Services Gateway

SRX 210 Services Gateway Secure Web Access Overview

This section includes the following topics:
SRX 210 Services Gateway Secure Web Access Overview on page 103
Generating SSL Certificates for the SRX 210 Services Gateway on page 104
You can manage an services gateway remotely through the J-Web interface. To
communicate with the services gateway, the J-Web interface uses Hypertext Transfer
Protocol (HTTP). HTTP allows easy Web access but no encryption. The data that is
transmitted between the Web browser and the services gateway by means of HTTP
is vulnerable to interception and attack. To enable secure Web access, a services
gateway supports HTTP over Secure Sockets Layer (HTTPS). You can enable HTTP
or HTTPS access on specific interfaces and ports as needed.
The services gateway uses the SSL protocol to provide secure management of services
gateways through the Web interface. SSL uses public-private key technology that
requires a paired private key and an authentication certificate for providing the SSL
service. SSL encrypts communication between your device and the Web browser
with a session key negotiated by the SSL server certificate.
An SSL certificate includes identifying information such as a public key and a signature
made by a certificate authority (CA). When you access the services gateway through
HTTPS, an SSL handshake authenticates the server and the client and begins a secure
session. If the information does not match or the certificate has expired, your access
to the services gateway through HTTPS is restricted.
SRX 210 Services Gateway Secure Web Access Overview
103

Advertisement

Table of Contents
loading

Table of Contents