Configuring Multiple Idp Policies For An Mx Series Router - Juniper NETWORK AND SECURITY MANAGER 2010.2 - ADMINISTRATION GUIDE REV1 Administration Manual

Table of Contents

Advertisement

Configuring multiple IDP policies for an MX Series Router

Copyright © 2010, Juniper Networks, Inc.
You would then add and configure IDP rulebases for the security policy to detect possible
attacks against servers in the Data_Center zone.
You can configure multiple IDP policies for an MX Series device by associating existing
IDP rules in the security policy assigned to the device, to multiple IDP policies. IDP services
on MX series routers allow administrators to provide security services to service provider
subscribers. Multiple IDP policies allow administrators to reference a service set associated
with a subscriber to a pre-configured IDP policy. This IDP policy is used to enforce security
inspection for traffic per subscriber. Service set configuration is supported in-device in
MX series devices and IDP policies can be associated with service sets using the
configuration node Services > Service Interface Pool > Service Set.
To create a new IDP policy:
1. In the main navigation tree, select Policies, then double-click the policy name in the
Security Policies window. The Security Policy window appears.
2. Select the IDP tab in the Security Policy window.
3. Click Add in the Policies panel.
4. Enter a name for the policy and comments if desired, in the pop-up menu, and click
OK. The new IDP policy is added to the Policies panel.
To add rules to the IDP policy:
1. In the main navigation tree, select Security Policies, then double-click the policy
name in the Security Policies window. The Security Policy window appears.
2. Select the IDP tab in the Security Policy window.
4. Right-click on the policy name in the Policies panel and select Add Rule. The rule
will be added to the IDP policy.
NOTE: If you select an IDP rule associated with multiple IDP policies from the IDP rule
table in a Security Policy window, the Policies panel displays the multiple IDP policies
to which the rule is associated.
To remove rules from the IDP policy:
1. In the main navigation tree, select Security Policies, then double-click the policy
name in the Security Policies window. The Security Policy window appears.
2. Select theIDP tab in the Security Policy window.
3. Select a rule from the IDP rule table.
4. Right-click on the policy that includes the rule in the Policies panel, and select
Remove Rule. The rule will be removed from the corresponding IDP policy in the Policies
panel but will remain in the IDP rule table.
Chapter 9: Configuring Security Policies
471

Advertisement

Table of Contents
loading

This manual is also suitable for:

Network and security manager 2010.2

Table of Contents