Configuring ScreenOS Devices Guide
Table 5: Policy-Based Management Options
Option
Groups
Zone Exceptions
Filtering
Scheduling
Security and Protection
Traffic Shaping
Related
Documentation
Error Prevention, Recovery, and Audit Management Using NSM
8
Description
Group your devices by platform, ScreenOS version, location, or function, and then add them to your
security policies.
Simplify your rules, by defining a common To Zone and From Zone for all devices in the rule, and
then specify zone exceptions to change the To and From zones for specific devices. Zone exceptions
add flexibility to your firewall rules, enabling you to manage more devices in a single rule.
Filter on From and To Zones to see rules between zones.
Schedule a period during which a security policy is in effect on the devices in a rule. Create schedule
objects as one-time, recurring, or both; you can even select multiple schedule objects in a firewall
rule.
Configure a rule to look for attacks, viruses, or specific URLs (devices running ScreenOS 5.x only).
Use your firewall rules to control the amount of traffic permitted through your security devices.
Device Configuration Settings Overview on page 25
Working with Multiple NSM Administrators Overview on page 13
Administering ScreenOS Devices Using NSM Complete System Management on page 10
Persistent management control is essential when managing large networks. You need
to be sure that configuration and policies you send to your managed devices are correct
before you install them on your devices.
Using NSM's error prevention and recovery features, you can ensure that you are
consistently sending stable configurations to your devices, and that your device remains
connected to NSM. Additionally, you can track each change made by an NSM
administrator to help you identify when, how, and what changes were made to your
managed devices.
The following topics are the error prevention, recovery, and audit management features
in NSM:
Device Configuration Validation on page 9
Policy Validation on page 9
Atomic Configuration and Updating on page 9
Device Image Updates on page 9
Auditing on page 9
Copyright © 2010, Juniper Networks, Inc.
Need help?
Do you have a question about the NETWORK AND SECURITY MANAGER 2010.4 - CONFIGURING SCREENOS DEVICES GUIDE REV 01 and is the answer not in the manual?