Juniper NETWORK AND SECURITY MANAGER 2010.4 - CONFIGURING SECURE ACCESS DEVICES GUIDE REV 01 Manual page 261

Configuring secure access devices guide
Hide thumbs Also See for NETWORK AND SECURITY MANAGER 2010.4 - CONFIGURING SECURE ACCESS DEVICES GUIDE REV 01:
Table of Contents

Advertisement

Copyright © 2010, Juniper Networks, Inc.
Table 67: Configuring Host Checker Customized Requirements Using
Custom Rules Details (continued)
Option
Function
Settings tab
File Rules
Use this rule type to ensure that
certain files are present or not
present on the client machine
before the user can access the
Secure Access device . You may
also use file checks to evaluate
the age and content (through
MD5 checksums) of required files
and allow or deny access
accordingly.
Registry
(Windows only)—Use this rule
Rules
type to control the corporate PC
images, system configurations,
and software settings that a client
must have to access the Secure
Access device. This rule type
ensures that certain registry keys
are set on the client machine
before the user can access the
Secure Access device. You may
also use registry checks to
evaluate the age of required files
and allow or deny access
accordingly.
Chapter 15: Configuring Secure Access Host Checker Policies
Your Action
1.
Enter the rule name.
2. Enter the filename such as:
c:\temp\bad-file.txt or
3. Select the Required option to specify that
these ports are open or closed.
4. Enter the minimum version of the file
(optional). For example, if you require
notepad.exe to be present on the client, you
can enter 5.0 in the box. Host Checker
accepts version 5.0 and later, of
notepad.exe.
5. Enter the maximum age of files in the File
modified less than (days ago) box.
6. Enter the MD5 checksums value of each
executable file to which you want the policy
to apply (optional).
7. Select the Monitor this rule for change in
result check box to continuously monitor
the policy compliance of endpoints.
8. Click OK.
1.
Enter the rule name.
2. Select the registry root key from the
drop-down list.
3. Enter the path to the application folder for
the registry subkey.
4. Enter the name of the key's value.
5. Select the key value's type (String, Binary,
or DWORD) from the drop-down list
(optional).
6. Enter the registry value.
7. Select the Set Registry value specified in
the criteria check box.
8. Select the Monitor this rule for change in
result check box to continuously monitor
the policy compliance of endpoints.
9. Click OK.
.
/temp/bad-file.txt
243

Advertisement

Table of Contents
loading

This manual is also suitable for:

Network and security manager

Table of Contents