Router Security
Router security consists of three major elements: physical security of the router, operating system security, and security that can be effected through configuration. Physical security involves restricting access to the router. Exploits that can easily be prevented from remote locations are extremely difficult or impossible to prevent if an attacker can gain access to the router's management port or console. The inherent security of the JUNOS operating system also plays an important role in router security. The JUNOS software is extremely stable and robust. The JUNOS software also provides features to protect against attacks, allowing you to configure the router to minimize vulnerabilities.
In designing your router configuration, you can increase router security by hardening the configuration, using the JUNOS features to apply sound security policies. In this way, virtually any router configuration should be capable of secure operation. Likewise, misconfiguring the JUNOS software can increase router vulnerability.
This section discusses some JUNOS software features available to improve router security: