And Integration Overview; Nsm And Intrusion Detection And Prevention Device Management Overview; Intrusion Detection And Prevention Services And Device Configurations Supported - Juniper NETWORK AND SECURITY MANAGER 2010.3 - CONFIGURING INTRUSION DETECTION AND PREVENTION GUIDE REV1 Manual

Configuring intrusion detection and prevention devices guide
Table of Contents

Advertisement

CHAPTER 2
Understanding Intrusion Detection and
Prevention Device Configuration and
Integration Overview

NSM and Intrusion Detection and Prevention Device Management Overview

Copyright © 2010, Juniper Networks, Inc.
NSM and Intrusion Detection and Prevention Device Management Overview on page 5
Intrusion Detection and Prevention Services and Device Configurations Supported in
NSM on page 6
Adding Intrusion Detection and Prevention Devices in NSM Overview on page 8
Adding Intrusion Detection and Prevention Clusters in NSM Overview on page 8
Using Templates and Configuration Groups in NSM Overview on page 8
NSM is the Juniper Networks network management tool that allows distributed
administration of network appliances. You can use the NSM application to centralize
status monitoring, logging, and reporting, and to administer IDP Series configurations.
IDP technology detects and stops attacks when deployed inline to your network. Unlike
intrusion detection service (IDS),, IDP uses multiple methods to detect attacks against
your network and to prevent attackers from gaining access and damaging your system.
IDP drops malicious packets or connections before the attacks enter your network. IDP
is designed to reduce false positives and ensure that only actual malicious traffic is
detected and stopped. You can also deploy IDP as a passive sniffer, similar to a traditional
IDS, but with greater accuracy and manageability.
NSM is the sole means for configuring and managing IDP on the ISG1000, ISG2000, and
standalone IDP Sensors running IDP 4.x. Standalone IDP sensors running IDP 3.x and
earlier are managed using the IDP management server and UI.
The ISG1000 and ISG2000 security modules have an optional component installed that
provides IDP functionality. If you have purchased an ISG1000 or ISG2000 device that
does not have IDP capability, you can upgrade the device to be an IDP-capable system
by replacing the memory chip in the CPU. You install up to three security modules and
instal the Advanced and IDP license keys for IDP.
5

Advertisement

Table of Contents
loading

This manual is also suitable for:

Network and security manager 2010.3

Table of Contents