[Contents]
[Prev]
[Next]
[Index]
[Report an Error]
J-Web Configuration
To enable IDP in a security policy:
- Create a security policy. The following tasks
create a policy idp-app-policy-1 for traffic traversing from Zone1 to Zone2:
- Select Configuration>View and Edit>Edit
Configuration. The Configuration page appears.
- Next to Security, click Configure or Edit.
- Next to Policies, select the check box and click Configure.
- Next to Policy, click Add new entry.
- In the From zone name box, type Zone1.
- In the To zone name box, type Zone2.
- Next to Policy, click Add new entry.
- In the Policy name box, type idp-app-policy-1.
- Specify the match conditions for the traffic flowing
in one direction. The following tasks specify that traffic from any
source address, to any destination address and with any application
type, matches the criteria for this policy:
- Next to Match, select the check box, and click Configure.
- From the Source Address choice list, select Source
address.
- Next to Source address, click Add new entry.
- From the Value keyword list, select Any and click OK.
- From the Destination Address choice list, select Destination
address.
- Next to Destination address, click Add new entry.
- From the Value keyword list, select Any and click OK.
- From the Application choice list, select Application.
- Next to Application, click Add new entry.
- From the Value keyword list, select Any and click OK.
- Specify the action to be taken on traffic that
matches the specified conditions. The following tasks permit all traffic
matching the specified criteria and direct it to be checked against
IDP rulebases:
- On the Policy name idp-app-policy-1 page, next the Then,
select check box and click Configure.
- From the Action list, select Permit.
- Next to Permit, click Configure.
- Next to Application services, click Configure.
- Next to Idp, select the check box.
- Create another security policy for traffic in the
other direction. The following tasks create another policy idp-app-policy-2 for traffic from Zone2 to Zone1:
- On the Policy page, next to Policy, click Add new
entry.
- In the From zone name box, type Zone2.
- In the To zone name box, type Zone1.
- Next to Policy, click Add new entry.
- In the Policy name box, type idp-app-policy-2.
- Specify the match conditions for the traffic flowing
in the other direction. The following tasks specify that traffic from
any source, to any destination with any application type, matches
the criteria for this policy:
- Next to Match, select the check box, and click Configure.
- From the Source Address choice list, select Source
address.
- Next to Source address, click Add new entry.
- From the Value keyword list, select Any and click OK.
- From the Destination Address choice list, select Destination
address.
- Next to Destination address, click Add new entry.
- From the Value keyword list, select Any and click OK.
- From the Application choice list, select Application.
- Next to Application, click Add new entry.
- From the Value keyword list, select Any and click OK.
- Specify the action to be taken on traffic that
matches the conditions specified in the policy. The following tasks
permit all traffic matching the specified criteria and direct it to
be checked against IDP rulebases:
- On the Policy name idp-app-policy-2 page, next the Then,
select check box and click Configure.
- From the Action list, select Permit.
- Next to Permit, click Configure.
- Next to Application services, click Configure.
- Next to Idp, select the check box.
- If you are finished configuring the router, commit
the configuration.
[Contents]
[Prev]
[Next]
[Index]
[Report an Error]