Juniper NETWORK AND SECURITY MANAGER 2010.4 - CONFIGURING SCREENOS DEVICES GUIDE REV 01 Manual page 157

Configuring screenos devices guide
Hide thumbs Also See for NETWORK AND SECURITY MANAGER 2010.4 - CONFIGURING SCREENOS DEVICES GUIDE REV 01:
Table of Contents

Advertisement

Copyright © 2010, Juniper Networks, Inc.
To configure a firewall rule:
Create a GTP object named GPRS1. For information about how to create a GTP object,
1.
see the Network and Security Manager Administration Guide.
Add the Gi Firewall (server) as a NetScreen-500 running ScreenOS 5.1, and then
2.
configure the network module:
Double-click the device icon to open the device configuration. In the device navigation
tree, select Network > Slot.
Double-click slot 1 to display the slot configuration dialog box. For Card Type, select
2 Interfaces (10/100), and then click OK.
Add the GTP firewall (client) as a NetScreen-500 running ScreenOS 5.0 GPRS, and
3.
then configure the network module:
Double-click the device icon to open the device configuration. In the device navigation
tree, select Network > Slot.
Double-click slot 1 to display the slot configuration dialog box. For Card Type, select
2 Interfaces (10/100).
Click OK to save the slot configuration.
Configure the Gi firewall (server):
4.
In the device navigation tree, select Advanced > NSGP Server Side.
Leave the default port number and enter an MD5 password.
In the NSGP Context IDs area, click the Add icon to display the New Context Entry
5.
dialog box. Configure the following options, and then click OK:
For Context Entry, enter 2.
For Zone, select untrust.
In the Interface NSGP Settings area, right-click ethernet1/2 and select Edit icon. The
6.
General Properties screen appears. Configure the following options:
Ensure that the Zone is untrust and the Mode is Route.
For IP Address, enter 2.2.1.4.
For Netmask, enter 24.
Ensure that Manageable is enabled and that the Management IP is 2.2.1.4.
In the interface navigation tree, select Service Options. Configure the following options:
7.
Select Telnet.
Select NSGP Enabled.
Select Enforce IPSec to encrypt the GTP connection.
Click OK to save your changes to the interface, and then click OK to save your changes
8.
to the device.
Chapter 4: Advanced Network Settings
133

Advertisement

Table of Contents
loading

Table of Contents