Juniper Networks
Log in
|
How to Buy
|
Contact Us
|
United States (Change)
Choose Country
Close

Choose Country

North America

  • United States

Europe

  • Deutschland - Germany
  • España - Spain
  • France
  • Italia - Italy
  • Россия - Russia
  • United Kingdom

Asia Pacific

  • Asean Region (Vietnam, Indonesia, Singapore, Malaysia)
  • Australia
  • 中国 - China
  • India
  • 日本 - Japan
  • 대한민국 - Korea
  • 台灣 - Taiwan
Solutions
Products & Services
Company
Partners
Support
Education
Community
Security Intelligence Center

Technical Documentation

Support
Technical Documentation
Content Explorer New
 
Enterprise MIBs
 
EOL Documentation
 
File Format Help
 
Glossary
 
Portable Libraries
 
 
Home > Support > Technical Documentation > SRX650 Services Gateway Secure Web Access Overview
Print
Rate and give feedback:  Feedback Received. Thank You!
Rate and give feedback: 
Close
This document helped resolve my issue.  Yes No

Additional Comments

800 characters remaining

May we contact you if necessary?

Name:  
E-mail: 
Submitting...

Documentation Search

Advanced Search |  Search Tips
 

Related Documentation

  • SRX650 Services Gateway Basic Connectivity Overview
  • Configuring Basic Settings for the SRX650 Services Gateway with a Configuration Editor
 

SRX650 Services Gateway Secure Web Access Overview

You can manage a services gateway remotely through J-Web. To communicate with the services gateway, J-Web uses Hypertext Transfer Protocol (HTTP). HTTP allows easy Web access but does not include encryption. The data transmitted between the client and the services gateway by means of HTTP is vulnerable to interception and attack. To enable secure Web access, a services gateway supports HTTP over Secure Sockets Layer (HTTPS). You can enable HTTP or HTTPS access on specific interfaces and ports as needed.

The services gateway uses the SSL protocol to provide secure management of services gateways through J-Web. SSL uses public-private key technology, which requires a paired private key and an authentication certificate to provide the SSL service. SSL encrypts communication between your device and the Web browser with a session key negotiated by the SSL server certificate.

An SSL certificate includes identifying information such as a public key and a signature made by a certificate authority (CA). When you access the services gateway through HTTPS, an SSL handshake authenticates the server and the client and begins a secure session. If the information does not match or if the certificate has expired, your access to the services gateway through HTTPS is restricted.

Without SSL encryption, communication between your services gateway and the browser is sent in the open and can be intercepted. We recommend that you enable HTTPS access on your WAN interfaces.

On services gateways, HTTP access is enabled by default on the built-in management interfaces. By default, HTTPS access is supported on any interface with an SSL server certificate.

You can use J-Web or the CLI to configure secure Web access.

Before you configure secure Web access for the first time, you must complete the following tasks:

  • Establish basic connectivity.
  • Obtain an SSL certificate from a trusted signing authority.

For more details about configuring secure web access on your services gateway, see the Junos OS Administration Guide.

 

Related Documentation

  • SRX650 Services Gateway Basic Connectivity Overview
  • Configuring Basic Settings for the SRX650 Services Gateway with a Configuration Editor
 

Published: 2010-12-01

 
  • About Juniper
  • The New Network
  • Investor Relations
  • Press Releases
  • Newsletters
  • Juniper Offices
  • Resources
  • How to Buy
  • Partner Locator
  • Image Library
  • Visio Templates
  • Security Center
  • Community
  • Forums
  • Blogs
  • Junos Central
  • Social Media
  • Support
  • Technical Documentation
  • Knowledge Base (KB)
  • Software Downloads
  • Product Licensing
  • Contact Support
Site Map / RSS Feeds / Careers / Accessibility / Feedback / Privacy & Policy / Legal Notices
Copyright© 1999-2012 Juniper Networks, Inc. All rights reserved.
Help
|
My Account
|
Log Out