[Contents] [Prev] [Next] [Index] [Report an Error]

Table of Contents

About This Guide
SRC Guides and Release Notes
Audience
Documentation Conventions
Related Juniper Networks Documentation
Obtaining Documentation
Documentation Feedback
Requesting Technical Support
Installing Applications
Installing the Sample SRC Applications
SRC Software for Sample and Demonstration Applications
Before You Install the Sample SRC Applications
Solaris Packages and Installation Folders for Sample and Demonstration Applications
Installing SRC Application Packages
Uninstalling SRC Packages
Installing Sample SRC Data for Sample and Demonstration Applications
Installing SRC Sample Web Applications
Installing Web Applications Inside the JBoss Application Server
Removing SRC Web Applications
Removing a Web Application from JBoss
Reviewing Port Settings for Sample SRC Applications
Providing Network Security and Threat Mitigation
Mirroring Subscriber Traffic in the SRC Network
Overview of Traffic Mirroring
Traffic-Mirroring Application
Configuring Traffic Mirroring
Configuring Scopes
Configuring Services for Mirroring
Configuring Services
Aggregate Service Fields for Mirroring Traffic
Subscribing to the Aggregate Service
Configuring Subscriber Sessions
Subscriber Classification Scripts
Interface Classification Scripts
Managing Traffic Mirroring
Overview of the Traffic Mirroring Administration Portal
Accessing the Portal
Starting New Mirroring Tasks
Managing Mirroring Tasks
Configuring the Traffic Mirroring Administration Portal
Deploying the Traffic Mirroring Administration Portal
Configuring the Traffic-Mirroring Application
Configuring NIC Proxy
Configuring Logging
Providing Endpoint Security with IVE
Overview of IVE Host Checker Integration
Before You Integrate IVE into an SRC Environment
Sample Implementation for Integrating IVE Host Checker
Configuring Host Checking in an SRC Network
Configuring the Host Check Result Portal
Overview of the Sample Host Check Result Portal
About the HostCheckServlet
Developing and Customizing the Sample Host Check Result Portal
Configuration Tasks to Deploy the Sample Portal
Configuring Properties for the Sample Host Check Result Portal
Basic Portal Properties
Locator Properties
Deploying the Sample Host Check Result Portal
Accessing the Portal
Configuring the Redirect Server to Redirect Traffic to the Captive Portal
Configuring Services for Subscribers
Scheduling Subscriber Host Checking
Providing Threat Mitigation Services with IDP
Overview of IDP Integration
Overview of IDP Integration
Before You Integrate IDP into an SRC Environment
Example: Integrating IDP into an SRC Environment
Sample Network Topologies
Components in Sample Data
Directing Subscriber Traffic to IDP for Monitoring
Surveillance Director
Router and Interface Subscriber Sessions
Subscriber Session to Host an Aggregate Service
Subscriber Session to Host a Core Interface Fragment Service
Subscriber Session to Host a Router Interface Fragment Service
Integrating IDP into an SRC Environment
Configuring Services and Subscriptions to Integrate IDP
Configuring Services and Subscriptions to Send Traffic to an IDP Sensor
Configuring Services to Policy-Route Traffic to IDP
Configuring Scopes When You Use Policy-Based Routing
Defining Services for Policy-Based Routing on JUNOSe Routers
Configuring a Subscriber Interface Service
Configuring a Core Interface Service
Configuring an Aggregate Service
Configuring Services to Mirror Traffic to IDP
Configuring Scopes When Mirroring Traffic
Defining Services for Mirroring on JUNOS Routing Platforms
Subscribing to an Aggregate Service from a JUNOSe Router
Classifying Subscribers for IDP Integration
Example: Router Subscriber Session to Host an Aggregate Service
Example: Interface Subscriber Session to Policy-Route Traffic to IDP
Example: Router Subscriber Session to Mirror Traffic to IDP
Classifying Interfaces for IDP Integration
Example: Interface Classification for Core Interfaces on a JUNOSe Router
Example: Interface Classification for the Forwarding Interface on a JUNOS Routing Platform
Sending E-Mail to Subscribers
Overview of IDP E-Mailer
How IDP E-Mailer Responds to Incidents Reported by IDP
Configuring Deployment Properties for IDP E-Mailer
Configuring Application Properties for IDP E-Mailer
Configuring General Properties for IDP E-Mailer
IDP E-Mailer Fields
Configuring a NIC Proxy for IDP E-Mailer
Configuring Logging for IDP E-Mailer
Configuring E-Mail Properties for IDP E-Mailer
E-Mailer Configurations Fields
Deploying IDP E-Mailer
Monitoring Subsets of Subscriber Traffic
Overview of Surveillance Director
Configuring Initial Properties for the Surveillance Director
General Properties for Surveillance Director
Java Properties for Surveillance Director
Customizing How to Monitor Subsets of Subscriber Traffic
Configuring Directory Properties for the Surveillance Director
Network Field
Configuring Logging for the Surveillance Director
Configuring an Instance of the Surveillance Director
Surveillance Director Fields
Defining Actions to Be Taken for Subscriber Traffic
Actions to Be Taken for Subscriber Traffic
Redirecting Web Requests to an IDP Captive Portal
Sequence for Redirecting Traffic
About the Record Servlet
Developing and Customizing the Sample IDP Captive Portal
Configuring Properties for the Sample IDP Captive Portal
Basic Portal Properties
Locator Properties
Deploying the Updated WAR File
Accessing the IDP Captive Portal
Configuring the Redirect Server to Redirect Traffic to the IDP Captive Portal
Applying Services to Subscribers Associated with Problem Traffic
Enabling SRC Actions from IDP Manager
Overview of How to Enable Actions from IDP Manager
Configuring Scripts for IDP
Before You Configure Scripts
Configuring Scripts
Properties in the idpsdx.py File
Sample idpsdx.py Script
Integrating IP Address Managers
Integrating IP Address Managers with the SAE
Overview of IP Address Manager Integration
Monitoring DHCP Messages
Monitoring RADIUS Messages
Installing Monitoring Agent
Configuring Monitoring Agent
Configuring Properties
Monitoring Agent Properties
Configuring NIC Proxy
Managing Monitoring Agent
Starting Monitoring Agent
Stopping Monitoring Agent
Displaying Monitoring Agent Status
Cleaning Monitoring Agent Logs
Integrating Prepaid Service Applications
Providing Prepaid Services
Overview of Prepaid Services Demo
Account Server
Time-Based Services
Volume-Based Services
Installing and Configuring the Prepaid Services Demo
Installing the Account Server
Configuring the Account Server
Publishing the Object References
Manual Configuration
Starting the Account Server
Stopping the Account Server
Configuring the SAE for the Prepaid Plug-In
Configuring the Prepaid Services
Deploying the Prepaid Account Administration Application
Configuring the Prepaid Account Administration Application
Managing Prepaid Accounts
Accessing the Prepaid Account Administration Application
Administering Accounts
Managing Access Portals for Residential Subscribers
Overview of the Residential Portal
How Subscribers Use a Residential Portal
Overview of a Residential Portal
Subscriptions to Services
Service Schedules in a Residential Portal
Equipment Registration for DHCP Login
Overview of the Sample Residential Portal
Web Application Architecture
Model Components
View Components
Control Components
Behaviors for the Sample Residential Portal
Installing and Configuring the Sample Residential Portal
Before You Install and Configure the Sample Residential Portal
Configuring Equipment Registration and ISP Service Behaviors
Configuring Cable Behavior
Authenticating Subscribers Through RADIUS
Customizing How the Sample Residential Portal Handles Unrecognized IP Subscribers
Overview of Configuration Files for the Sample Residential Portal
WEB-INF/portalBehavior.properties
WEB-INF/struts-config.xml
WEB-INF/tiles-defs.xml
Installing the Sample Residential Portal
Preparing the Application for Customization
Configuring the Sample Residential Portal
Deploying the Updated WAR File
Testing a Portal Application
Removing Access to the Sample Residential Portal
How Subscribers Use the Sample Residential Portal
Overview of the Sample Residential Portal
Before You Use the Sample Residential Portal
Logging In to the Sample Residential Portal Using a Simulated User Profile
Logging In to the Sample Residential Portal
Managing Services from the Sample Residential Portal
Starting and Stopping Services
Getting Usage Information
Setting Up the Type of Service Activation
Setting Up Service Schedules
Specifying Values for Times
Setting Times
Setting Actions
Subscribing to Services
Registering Equipment for DHCP Login
Disabling Equipment Registration
Logging Out of the Sample Residential Portal
Using the Sample Residential Portal from PDAs
Developing a Residential Portal
Before You Develop a Residential Portal
Development Tools to Create a Residential Portal
Virtual IP Address for Policies
Redirecting Traffic to a Captive Portal Web Page
Sequence for Redirecting Traffic
Configuring the SRC Software in a Multihop Environment
Managing Security for Public Wireless LAN Applications
Developing a Portal Based on the Sample Residential Portal
Preparing to Develop a Portal Based on the Sample Residential Portal
Creating a Portal Project
Building the Portal
Deploying the Portal
Testing a Portal Application
Designing Services for Enterprise Manager Portal
Reviewing and Configuring Policies and Services for Enterprise Manager Portal
Overview of Services for Enterprise Manager Portal
Directory Structure
Priorities for Subscriptions
Before You Configure Services for Enterprise Manager Portal
Configuring Firewall Policies and Services for Enterprise Manager Portal
Types of Firewall Services
Overview of Basic Firewall Services and Policies
Tasks to Configure Firewall Policies and Services
Configuring Basic Firewall Policies
Configuring Basic Firewall Services
Reviewing the fwrule Policy Group for Exceptions to Stateful Firewalls
Reviewing the Firewall Rule Service for Exceptions to Stateful Firewalls
Reviewing Services for Exceptions to Stateless Firewalls
Parameter Values Used by Services for Exceptions to Stateless Firewalls
Planning Services for Custom Firewall Exceptions
Configuring Policies for Custom Firewall Exceptions
Configuring Services for Custom Firewall Exceptions
Configuring Priorities for Stateless or Stateful Firewall Services
Configuring Priorities to Have Enterprise Services Work Together
Configuring Priorities for Individual Scopes by Defining Them in Services
Using Stateless Firewall and BoD Applications Together
Configuring NAT Policies and Services for Enterprise Manager Portal
NAT Policies and Services in the SRC Sample Data
Configuring the dynsrcnat Policy Group
Reviewing the DynSrcNat Service
Configuring the staticdstnat Policy Group
Configuring the StaticDstNat Service
Configuring the staticsrcnat Policy Group
Configuring the StaticSrcNat Service
Configuring Bandwidth Policies and Services for Enterprise Manager Portal
Overview of Bandwidth-on-Demand Services
Parameter Values Used by BoD Services
Bandwidth Policies for Different Routing Platforms
Configuring Basic BoD Policies
Configuring Basic BoD Services
Configuring BoD Policies
Configuring BoD Services
Using BoD Services to Assign Traffic to Bandwidth Categories
Using BoD and Basic BoD Services Together to Supply Class of Service
Examples: Setting Up Forwarding Preferences
Setting Up Forwarding Preferences by Using CoS on JUNOS Routing Platforms
Setting Up Forwarding Preferences by Allocating a Percentage of a Link’s Bandwidth to a Service
Enabling Schedules for Subscriptions for Enterprise Manager Portal
Configuring VPNs for Enterprise Manager Portal
Overview of VPN Management Through Enterprise Manager Portal
Before You Configure VPN Policies and Services
Configuring Policies for BoD Traffic Destined for VPNs
Configuring Services for BoD Traffic Destined for VPNs
Billing Subscribers Through SCU/DCU for JUNOS Routing Platforms
Managing Access Portals for Enterprise Subscribers
Overview of Enterprise Service Portals
Function of Enterprise Service Portals
Consistency of Data in the Directory
Privileges of IT Managers
Developing and Customizing Enterprise Service Portals
Identifying the SAE
Enterprise Service Portals Provided with the SRC Software
Sample Enterprise Service Portal
Enterprise Manager Portal
NAT Address Management Portal
Enterprise Service Portal Audit Plug-In
Network Information Collector with Enterprise Service Portals
Service Parameters
Substitutions and the Parameter Acquisition Path
Power of Substitutions
Substituting Values for Policy Parameters
Managing Subscriptions to Aggregate Services
Configuring Your Web Browser to Use an Enterprise Service Portal
Accessing Enterprise Service Portals
Planning Deployment for Enterprise Service Portals
Architecture of Enterprise Service Portals
Elements for an Enterprise Service Portal
Communication Protocols
Deployment Scenario for an Enterprise Service Portal
Deciding Which Enterprise Service Portal to Use
Planning Number of Instances of an Enterprise Service Portal
Planning Namespace Hierarchy for an Enterprise Service Portal
Installing and Configuring Enterprise Service Portals
Before You Install an Enterprise Service Portal
Setting Up Enterprise Service Portals
Preparing the Web Applications for Customization
Configuring Connections to the Directory
Configuring Deployment Settings for Enterprise Manager Portal
Configuring the URL for an Enterprise Service Portal
Writing an Application to Allow a Machine to Provide Public IP Addresses for NAT
Configuring an Enterprise Service Portal Audit Plug-In
Managing Services with Enterprise Manager Portal
Overview of Enterprise Manager Portal
Getting Help on Enterprise Manager Portal
Setting the Configuration Level for Enterprise Manager Portal
Managing Schedules
Schedules in Enterprise Manager Portal
Enabling Scheduling for the Enterprise Manager Portal
Using Schedules in Enterprise Manager Portal
Creating a Schedule in Enterprise Manager Portal
Applying a Schedule to a Service in Enterprise Manager Portal
Disabling a Schedule for a Service in Enterprise Manager Portal
Changing Schedules in Enterprise Manager Portal
Managing Subscriptions to Bandwidth-on-Demand Services
Overview of Bandwidth-on-Demand Services
Planning Subscriptions to BoD Services
Creating a Subscription to BoD Services
Setting a Bandwidth Level
Adding Subscriptions to BoD Services
Modifying Rules for a Subscription to a BoD Service
Modifying the Bandwidth Level
Moving the Bandwidth Level
Deleting a Subscription for a BoD Service
Deleting the Bandwidth Level
Monitoring Use of Subscriptions to BoD Services
Integrating VPNs into an SRC Network Through Enterprise Manager Portal
Overview of VPNs in an SRC Network
Modifying Subscriber VPN Configuration
Creating Extranets Through Enterprise Manager Portal
Deleting Extranets Through Enterprise Manager Portal
Sending Traffic to a VPN
Modifying the VPN to Which the Router Sends Traffic
Stopping the Router from Sending Traffic to VPNs
Classifying Traffic for Stateful Firewall Exceptions and NAT Rules
Overview of Traffic Classification for Firewall Exceptions and NAT Rules
Classifying Traffic
Modifying Values for Traffic Classifications
Deleting Traffic Classifications
Subscribing to Firewall Services Through Enterprise Manager Portal
Overview of Firewall Services in Enterprise Manager Portal
Before You Configure Firewall Exception Rules
Creating Subscriptions to Firewall Services
Creating Firewall Exceptions for Stateless Firewalls
Creating Firewall Exceptions for Stateful Firewalls
Adding a Schedule to a Firewall Exception
Modifying Firewall Exceptions
Deleting Firewall Exceptions
Deleting Basic Firewalls
Monitoring the Use of Subscriptions to Firewall Services
Working with IP Addressing and NAT Services
Requesting Public IP Addresses for NAT Services
Canceling Requests for Public IP Addresses
Returning Public IP Addresses to Service Providers
Applying NAT Rules to Traffic
Configuring Public IP Addresses for Outgoing Traffic
Configuring Public IP Addresses for Incoming Traffic
Configuring Fixed Public Addresses for Outgoing Traffic
Modifying NAT Rules
Deleting NAT Rules
Monitoring the Status of Subscriptions
Troubleshooting Subscriptions That Are Not Functioning Correctly
Troubleshooting Subscriptions of Unknown Status
Managing Enterprise Service Portals
Displaying Information About Your Control in the Enterprise Through the Enterprise Service Portal
Updating Data That the Enterprise Service Portal Displays
Managing Operators Through the Enterprise Service Portal
Creating Managers Through the Enterprise Service Portal
Modifying Managers Through the Enterprise Service Portal
Deleting Managers Through the Enterprise Service Portal
Using NAT Address Management Portal
Overview of NAT Address Management Portal
Assigning IP Addresses
Acknowledging the Release of IP Addresses
Using the Sample Enterprise Service Portal
Overview of the Sample Enterprise Service Portal
Starting the Sample Enterprise Service Portal
Subscribing to Services
Activating Subscriptions
Deactivating Subscriptions
Suspending Subscriptions
Canceling Suspensions of Subscriptions
Monitoring Use of Subscriptions
Specifying Values for Service Parameters in Subscriptions
Restoring Default Values for Service Parameters In Subscriptions
Deleting Subscriptions
Monitoring Service Sessions for a Subscription
Defining Networks for Departments in an Enterprise
Modifying Network Definitions for Departments in an Enterprise
Deleting Network Definitions for Departments in an Enterprise
Developing an Enterprise Service Portal
Developing a Portal Based on the Sample Enterprise Service Portal
Preparing to Develop a Sample-Based Enterprise Service Portal
Creating a Portal Project for a Sample-Based Enterprise Service Portal
Building a Sample-Based Enterprise Service Portal
Deploying a Sample-Based Enterprise Service Portal
Testing a Sample-Based Enterprise Service Portal
Using a Virtual Address for the Portal
Index
Index

[Contents] [Prev] [Next] [Index] [Report an Error]