Editing And Deleting Address Objects; Replacing Address Objects; Adding An Address Object Group - Juniper NETWORK AND SECURITY MANAGER 2010.2 - ADMINISTRATION GUIDE REV1 Administration Manual

Table of Contents

Advertisement

Copyright © 2010, Juniper Networks, Inc.
To configure a wildcard mask, follow the procedure for adding a network address object.
In the
dialog box, select
Network
field. If you are configuring wildcard masking on a new device, verify that the device
Mask
update and Delta Config Summary operations are successful.
NOTE: When a firewall policy with network address objects is applied to JUNOS devices,
the device update operation in NSM fails, because DMI devices do not support network
address objects.

Editing and Deleting Address Objects

To edit an address object, right-click on the object and select Edit. To delete as address
object, right-click on the object and select Delete. For more information on editing and
deleting address objects, refer to the NSM Online Help.

Replacing Address Objects

To replace an address object, right-click on the object to be replaced and select Replace
With. Replacing address objects simplifies making repeated changes to an address object
that is referenced in multiple security policies. If you have permission to view global
domain objects for the objects you are replacing, then all objects for the selected category
in the current domain and the global domain are displayed in the Replace With wizard,
but the object to be replaced is not displayed. When you replace address objects, keep
the following in mind:
There is no validation check when replacing address objects.
You cannot undo or roll back a Replace With operation.
NOTE: Replacing address objects only affects objects in your current working domain.
After replacing address objects, it is good practice to check your security policies for any
errors that may result. You can always edit or remove any duplicate objects in the security
policy.

Adding an Address Object Group

To simplify security policies, you can combine multiple address objects in an address
object group. An address object group can contain address objects (and other address
object groups) from the current subdomain and the global domain.
To add an Address Object Group:
In the navigation tree, select Address Objects. The address object tree appears.
1.
In the main display area, click the Add icon and select Group.
2.
Enter a unique name for the group.
3.
. You can then add or edit the
Use Wildcard Mask
Chapter 8: Configuring Objects
Wildcard
327

Advertisement

Table of Contents
loading

This manual is also suitable for:

Network and security manager 2010.2

Table of Contents