Enabling Predefined Client-Side Policies For Windows Only; Procedure); Enabling Connection Control Policies; Enabling Predefined Client-Side Policies For Windows Only (Nsm Procedure) - Juniper NETWORK AND SECURITY MANAGER 2010.4 - CONFIGURING SECURE ACCESS DEVICES GUIDE REV 01 Manual

Configuring secure access devices guide
Hide thumbs Also See for NETWORK AND SECURITY MANAGER 2010.4 - CONFIGURING SECURE ACCESS DEVICES GUIDE REV 01:
Table of Contents

Advertisement

Enabling Predefined Client-Side Policies for Windows Only (NSM Procedure)

Enabling Connection Control Policies

Related
Documentation
Copyright © 2010, Juniper Networks, Inc.
The Secure Access device comes equipped with predefined client-side Host Checker
policies that you simply need to enable, not create or configure, to use them. The
connection control policies work only on Windows systems. It includes:
Enabling Connection Control Policies on page 247
The predefined connection control Host Checker policy prevents attacks on Windows
client computers from other infected computers on the same physical network. The Host
Checker connection control policy blocks all incoming TCP connections. This policy allows
all outgoing TCP and Network Connect traffic, as well as all connections to DNS servers,
WINS servers, DHCP servers, proxy servers, and the Secure Access device.
NOTE: Users must have administrator privileges for the Host Checker to
enforce the connection control policy on the client computer.
To enable the predefined Host Checker connection control policy:
In the NSM navigation tree, select Device Manager > Devices. Click the Device Tree
1.
tab, and then double-click the Secure Access device for which you want to enable
the predefined Host Checker connection control policy.
Click the Configuration tab, and select Authentication > Endpoint Security > Host
2.
Checker.
Select Settings > Options, and then select the Perform dynamic policy reevaluation
3.
check box.
Click one:
4.
OK—Saves the changes.
Cancel—Cancels the modifications.
NOTE: You must evaluate or enforce the connection control policy at the
realm level to make the policy effective on client computers.
Enabling Predefined Client-Side Policies for Windows Only (NSM Procedure) on page 247
Configuring Virus Signature Version Monitoring (NSM Procedure) on page 248
Chapter 15: Configuring Secure Access Host Checker Policies
247

Advertisement

Table of Contents
loading

This manual is also suitable for:

Network and security manager

Table of Contents