You can convert a traditional firewall policy to a unified policy. Unified policies are security policies that enable you to use the dynamic applications as match conditions as part of the existing 5-tuple or 6-tuple (5-tuple with user firewall) match conditions to detect application changes over time. If the traffic matches the security policy rule, one or more actions defined in the policy are applied to the traffic.
To convert a standard firewall policy to a unified policy:
The Standard Policies page appears.
None—By default the value of the dynamic application signatures is set to None. In this case, the value of service is retained in all rules in the policy.
Any—The value of the service is set to junos-defaults. This enables the firewall policy to use default protocols and ports of dynamic applications.
A job is created to convert the standard policy to an unified policy.
The Conversion page is displayed.
Note
Only standard policies without AppFW support can be converted to unified policy.
© 2020 Juniper Networks, Inc. All rights reserved