Service Object Groups - Juniper NETWORK AND SECURITY MANAGER 2010.2 - ADMINISTRATION GUIDE REV1 Administration Manual

Table of Contents

Advertisement

Service Object Groups

Copyright © 2010, Juniper Networks, Inc.
For ICMP services, in the General tab click the Add icon. Enter the ICMP type and
code, then click OK. For information about ICMP type, see the NSM Online Help.
For Sun-RPC services, select the Sun-RPC tab, then click the Add icon. Enter high
and low program identifiers, then click OK. You can add up to eight program ranges;
ensure that the Program High value is greater than or equal to the Program Low
value.
NOTE: For the complete list of the Sun Microsystems Program IDs and Microsoft UUIDs,
refer to the ScreenOS online Help.
For MS-RPC services, select the MS-RPC tab, then click the Add icon. Enter a UUID,
then click OK. A UUID is 36 characters.
For other non-ICMP services, in the NON-ICMP Service Entries area, click the Add
icon. Select the protocol type and configure the source and destination ports, then
click OK. To create a service object that uses multiple ports for the same service,
add two service entries with different ports.
You can group services together as a service object group, then use that group in security
policies and VPNs to simplify administration. Each service object can be referenced by
multiple service object groups. Service object groups can contain both predefined and
custom service objects, as well as other service object groups.
To add a service object group:
In the navigation tree, select Object Manager > Service Objects.
1.
In the main display area, click the Add icon and select Group. The New Service Group
2.
dialog box appears.
Enter a name, color, and comment for the service object group.
3.
NOTE: Service object group names cannot be the same as service object names.
In the Non-members area, select the service objects or service object groups you
4.
want to add to the group (hold Ctrl to select multiple objects), then click Add.
NOTE: You can drag service objects into and out of service groups from the main service
tree.
Click OK.
5.
The new service object group appears in the Service Tree and Service Table tabs.
Chapter 8: Configuring Objects
387

Advertisement

Table of Contents
loading

This manual is also suitable for:

Network and security manager 2010.2

Table of Contents