Creating Protected Resources; Editing Protected Resources - Juniper NETWORK AND SECURITY MANAGER 2010.2 - ADMINISTRATION GUIDE REV1 Administration Manual

Table of Contents

Advertisement

Network and Security Manager Administration Guide

Creating Protected Resources

Editing Protected Resources

418
Traffic Direction—Traffic direction is determined by the IP address that initiates the
connection:
Client connections are outgoing (outbound) from the protected network.
Server connection are incoming (inbound) to the protected network.
To protect incoming and outgoing traffic, select Both.
Security Device—The device that protects the network component and server. If the
resource can be reached through more than one device, add multiple devices to the
resource. When you add a protected resource to a VPN, the devices in the protected
resource are included in the VPN.
Each protected resource represents an address or a range of addresses on your network.
Each resource also can specify a service (such as FTP or NSF). Therefore, the protected
resource is the destination for all traffic using the selected service to the selected address.
You can have more than one protected resource for a single address or range of addresses.
That way you can individually manage different services traffic to the same destination
separately.
To add a protected resource object:
In the navigation tree, select VPN Manager > Protected Resources . In the main
1.
display area, click the Add icon to display the Protected Resource dialog box.
Enter a name for the protected resource.
2.
Select the services you want to permit to this resource, such as FTP, HTTP, NFS, and
3.
so on. Select Any to permit all services.
Select the initiator of the permitted service: Server, a Client, or Both.
4.
Select the address object or address group for the resource.
5.
Add the security device through which traffic can reach the protected resource:
6.
a.
In the Security Gateway area, click the icon to display the Security Gateway dialog
box.
b.
Select security device or device group
c.
Select the security zone on the security device that contains the address objects.
d.
Click OK to add the security gateway to the protected resource.
You can add multiple security gateways to provide redundant access for the protected
resource.
You can edit protected resources to accommodate changes in your network:
Copyright © 2010, Juniper Networks, Inc.

Advertisement

Table of Contents
loading

This manual is also suitable for:

Network and security manager 2010.2

Table of Contents