NSM Infranet Controller Configuration Guide
100
You will need to use a source interface policy if you have multiple virtual routers, and you
have an IPsec routing policy with destination zone DEST, and one of the following is true:
There are multiple IPsec policies on the enforcer with a destination zone DEST and
different source zones.
There is an IPsec policy on the enforcer with a destination zone DEST whose source
zone has multiple interfaces.
To configure a source interface policy:
In the NSM navigation tree, select Device Manager> Devices.
1.
Click the Device Tree tab, and then double-click the Infranet Controller for which you
2.
want to configure a source interface policy.
Click the Configuration tab. In the configuration tree, select UAC > Infranet Enforcer
3.
> Source Interface.
Add or modify source interface policy settings as specified in Table 31 on page 100.
4.
Click one:
5.
OK—Saves the changes.
Cancel—Cancels the modifications.
Table 31: Source Interface Policy Configuration Details
Option
Name
Description
Enforcer
Source Interface
Function
Specifies the source
interface policy name.
Describes the source
interface policy.
Specifies the Infranet
Enforcer to which the
endpoints connect.
Specifies the interface on
the Infranet Enforcer to
which traffic from
endpoints connects.
Your Action
Enter a name for the source interface
policy.
Enter a brief description for the source
interface policy.
Select the Infranet Enforcer.
Specify the interface. To view the zone
table on the Infranet Enforcer, enter
the following command: get zone
Copyright © 2010, Juniper Networks, Inc.
Need help?
Do you have a question about the NETWORK AND SECURITY MANAGER 2010.4 - CONFIGURING INFRANET CONTROLLER GUIDE REV 01 and is the answer not in the manual?