Juniper Networks
Log in
|
How to Buy
|
Contact Us
|
United States (Change)
Choose Country
Close

Choose Country

North America

  • United States

Europe

  • Deutschland - Germany
  • España - Spain
  • France
  • Italia - Italy
  • Россия - Russia
  • United Kingdom

Asia Pacific

  • Asia Region
  • Australia
  • 中国 - China
  • India
  • 日本 - Japan
  • 대한민국 - Korea
  • 台灣 - Taiwan
Solutions
Products & Services
Company
Partners
Support
Education
Community
Security Intelligence Center

Day One Book: Securing the Routing Engine on M, MX, and T Series

Junos Fundamentals
This Week: Hardening Junos Devices
 
Configuring Junos Policies and Firewall Filters
 
Deploying Basic QoS
 
Junos Tips, Techniques, and Templates 2011
 
Securing the Routing Engine on M, MX, and T Series
 
Exploring the Junos CLI
 
Configuring Junos Basics
 
Monitoring and Troubleshooting
 
 

Need Help?

  • Learn How to Buy
  • Call Us
  • Email Us
Print
Day One Book: Securing the Routing Engine on M, MX, and T Series

BOOK DESCRIPTION

The routing engine on Junos routers performs many different functions, from processing routing protocol updates, to driving the command-line interface (CLI). Given that the routing engine is critical to the operation of the device and its network, you need to protect the routing engine from unwanted traffic by allowing only essential permitted traffic. Unwanted traffic can come in many different forms: malicious traffic seeking to gain unauthorized access, unintentional routing protocol updates from neighboring devices, or even legitimate traffic that exceeds a given bandwidth limit.

This Day One book shows you how to secure the routing engine step-by-step. Learn how, learn why, then follow along as you build a modular firewall filter and apply it.

“An indispensable resource for anyone who needs to protect their Internet connected routers.” Matt Hite, Network engineer, Zynga

Sample Pages

 

 

DOWNLOAD BOOK

Day One books are a free download for our J-Net members*. If you're not a J-Net member, create a user account now. It's fast and there's no commitment or spam. Once you're a member you can come back and download any of the Day One books.


* If you have an existing Juniper user account, you can use it to login to J-Net

ABOUT THE AUTHOR(S)

Douglas Hanks Jr. is a Sr. Systems Engineer with Juniper Networks. He is certified in Juniper Networks as JNCIE-ENT #213 and JNCIE-SP #875. Douglas' interests are network engineering and architecture for both Enterprise and Service Provider routing and switching.

 What got you started on this book?

I work closely with many large, enterprise customers in the San Francisco Bay Area. One of the most common questions I receive is "how do we secure the router?" It's a very valid concern because in many of the implementation scenarios the routers are being directly exposed to the Internet, partners or customers.

 Who is this book for?

Securing the Routing Engine for the M, MX and T Series is for anyone who is responsible for designing, implementing and maintaining security on Juniper routers. It isn't specific for enterprise or service provider customers, as the problems addressed in this book are common to all customers. The book is written by network engineers for network engineers.

 After reading this book, what's the take away?

This book arms the reader with all the tools requires to secure the routing engine. There are three primary building blocks in this book: firewall filters, policers and Junos configuration automation. The book is bundled with a security framework that the reader can instantly deploy into his or her environment with very little customization required.

 What are you hoping that people will learn from this book?

It's generally accepted that there's a hard way of doing things and there's an easy way. I hope that it becomes self-evident how powerful Junos is compared to other network operating systems. Junos allows the network administrator to focus on the difficult problems while offloading repetitive and mundane tasks. Ultimately, Junos allows your business to "do more with less."

  What do you recommend as the next item to read after this book?

I have no specific book recommendation, but instead I encourage the reader to pursue a Junos certification. There are three tracks: enterprise, service provider, and security. Each track begins with the JNCIA-Junos certification and branches out from there. Each track has three levels certification: specialist, professional and expert. The certification process is a very challenging and rewarding experience. I'm currently going through the certification process and it has taught me to have a new level of respect of the amount of work and knowledge required to obtain the highest certificate of JNCIE.Find out more at http://www.juniper.net/us/en/training/certification/

 What's your inspiration?

I love writing. It's something that I wish I could do more of. I was fortunate enough to recognize a major concern out in the field and have the opportunity to work with Juniper to publish this book.

  What's your favorite bit/part in the book?

Chapter 2: Policers. I'm a visual learner and for a very long time I had trouble fully understanding how they actually work. Policers aren't a tangible thing you can pick up and take apart. If there are other readers that have difficulty understanding policers, I hope that this book clearly illustrates how they work and can be used.

 
 

Blogs

  • Architecting the Network for the IPv6 transition

Recommended Reading

  • IPv6 Innovation
  • Junos for Dummies

Release Highlights

  • Junos Release
 
 
  • About Juniper
  • Investor Relations
  • Press Releases
  • Newsletters
  • Juniper Offices
  • Green Networking
  • Resources
  • How to Buy
  • Partner Locator
  • Image Library
  • Visio Templates
  • Security Center
  • Community
  • Forums
  • Blogs
  • Junos Central
  • Social Media
  • Developers
  • Support
  • Technical Documentation
  • Knowledge Base (KB)
  • Software Downloads
  • Product Licensing
  • Contact Support
  • Follow Us
  • j-net
  • YouTube
  • Twitter
  • Facebook
  • RSS
Site Map / RSS Feeds / Careers / Accessibility / Feedback / Privacy & Policy / Legal Notices
Copyright© 1999-2012 Juniper Networks, Inc. All rights reserved.

Enterprise

Service Provider

Public Sector

Business Needs 

  • Application Infrastructure
  • Business Continuity
  • Mobility
  • Network Infrastructure
  • Security and Compliance

Locations / Architectures 

  • Campus & Branch
  • Cloud-Ready Data Center
  • Remote & Mobile Users

Industries 

  • Energy and Utilities
  • Financial Services
  • Government
  • Healthcare
  • Education

The Innovators 

  • Customer Stories

Business Needs 

  • Managed Service Provider
  • Network Infrastructure
  • Network Security
  • Network and Service Management
  • Residential
  • Telepresence

Locations / Architectures 

  • Core
  • Packet Transport
  • Cloud-Ready Data Center
  • Universal Access
  • Universal Edge

Segments 

  • Cable Operator
  • Wireline Carrier
  • Content Service Provider
  • Wireless Carrier

Business Needs 

  • Application Infrastructure
  • Disaster Recovery / Business Continuity
  • Security and Compliance
  • Certifications

Locations / Architectures 

  • Branch Office
  • Campus
  • Cloud-Ready Data Center
  • Remote Users
  • VPNs and WAN

Products by Category

  • Application Acceleration
  • Content and Media Delivery
  • Data Center Fabric
  • Identity and Policy Control
  • Juniper Developer Network
  • Mobile Infrastructure
  • Network Management
  • Network Operating System
  • Packet Transport
  • Routing
  • Security
  • Software
  • Switching
  • Time Synchronization
  • Wireless
  • End-of-Sale Products

Services

  • Consulting Services
  • Installation and Configuration Services
  • Technical Services

All Products & Services

A B C D E F G H I J K L M N O P Q R S T U V W X Y Z

About Juniper

News and Information

The Juniper Difference

  • Company Profile
  • Leadership
  • Business Partners
  • Careers
  • Contact Us
  • Analyst Relations
  • Press Center
  • Events
  • Subscriptions
  • Innovations
  • Awards
  • Recognition
  • Case Studies and Customer Quotes
  • Corporate Responsibility
  • Ventures
Help
|
My Account
|
Log Out