About the Identity Management Page
You are here: Configure > Security Services > User Firewall > Identity Management.
You can add, edit or delete the identity management profiles. You can also view the connection status of this SRX device with the juniper identity management services.
Tasks You Can Perform
You can perform the following tasks from this page:
Add an identity management profile. See Add an Identity Management Profile.
Edit an identity management profile. See Edit an Identity Management Profile.
Delete an identity management profile. See Delete Identity Management Profile.
Field Descriptions
Table 1 describes the fields on the Identity Management Profile page.
Table 1: Fields on the Identity Management Profile Page
Field | Description |
---|---|
General Information | |
Connection Type | Type of connection (HTTP or HTTPS). |
Port Number | Connection port to JIMS server. |
Primary IP Address | Primary IP address of the JIMS server. |
Primary CA Certificate | Primary CA certificate of the JIMS server. |
Primary Client ID | Client-id of the device to obtain access token from primary JIM Server |
Primary Client ID | Secondary IP address of the JIMS server. |
Secondary Connection Status | Connection status to the secondary JIMS server. |
Secondary CA Certificate | Secondary CA certificate of the JIMS server. |
Secondary Client ID | Client-id of the device to obtain access token from secondary JIMS server. |
Query API | Path of the URL for querying user identities. |
Query API | Path of the URL for acquiring access token. |
Advanced Settings Note: Advanced query cannot be configured when active-directory auth or ClearPass Webapi is enabled. Disable active-directory-access and authentication-source under User-Identification and disable webapi services before committing identity management configuration. | |
Items per Batch | Maximum items number in one batch query. |
No IP Query | Status of no-ip-query; Enabled/Disabled |
Authentication Entry Timeout | Timeout value of auth entry from identity-management. |
No Authentication Entry Timeout | |
Address-book | |
Address-book | |
Domain |