[Contents]
[Prev]
[Next]
[Index]
[Report an Error]
J-Web Configuration
To create IP addresses for the interfaces on the
device using the J-Web configuration editor:
- Select Configuration>View and Edit>Edit
Configuration.
The Configuration page appears.
- Next to Interfaces, click Configure or Edit.
- Next to Interface, click Add new entry.
- In the Interface name box, type ge-0/0/1.
- Next to Unit, click Add new entry.
- In the interface unit number, type 0.
- Under Family, select Inet and click OK.
- Next to Address book, click Configure or Edit.
- Next to Address, click Add new entry.
- In the Address name box, type 20.20.20.1/24 and click OK.
- Next to Address, click Add new entry.
- In the Address name box, type 20.20.20.2/24 and click OK.
- To configure another interface ge-5/0/0 and more addresses like 30.30.30.1/24 and 30.30.30.1/24, repeat Step 2 through Step 9 and click OK.
To create an access profile:
- Select Configuration>View and Edit>Edit
Configuration.
The Configuration page appears.
- Next to Access, click Configure or Edit.
- Next to Profile, click Add new entry.
- In the Profile name box, type FWAuth.
- Next to Client, click Add new entry.
- In the Name box, type FWClient1.
- Next to Firewall User, click Configure or Edit.
- In the Password box, type pwd and
click OK.
To add the FWAuth profile for
pass-through firewall authentication:
- Next to Firewall Authentication, click Configure or Edit.
- Next to Pass through, click Configure or Edit.
- In the Default profile box, type FWAuth.
To define a success banner for Telnet sessions:
- Next to Telnet box, click Configure or Edit.
- Next to Banner, click Configure or Edit.
- In the Success box, type “ WELCOME TO JUNIPER
TELNET SESSION” and click OK.
To create security zones:
- Select Configuration > View and Edit >
Edit Configuration.
The Configuration page appears.
- Next to Security, click Configure or Edit.
- Next to Zones, click Configure or Edit.
- Next to Security zone, click Add new entry.
- In the Name box, type UT-ZONE.
- Next to Host inbound traffic, click Configure or Edit.
- Next to System services, click Add new
entry.
- From the Service name list, select all and click OK.
- To configure an interface for the created security zone,
corresponding to the security zone, click Edit.
- Next to Interfaces, click Add new entry.
- In the Interface unit box, type ge-0/0/1.0 and
click OK.
- Next to Protocols, click Add new entry.
- Next to the Protocol name box, type all and click OK.
- To specify another interface fe-5/0/0.0 for the
zone, repeat Step 9 and Step 10 and click OK.
- To add another security zone T-ZONE, repeat Step
3 through Step 7 and click OK.
To assign a security policy to the zone:
- Select Configuration > View and Edit >
Edit Configuration.
The Configuration page appears.
- Next to Security, click Configure or Edit.
- Next to Policy, select the check box and click Configure.
- Next to Policy, click Add new entry.
- In the From zone name box, type UT-ZONE.
- In the To zone name box, type T-ZONE.
- Next to Policy, click Add new entry.
- In the Policy name box, type Policy-W.
- Select the Match check box.
- Select the Then check box.
- Next to Match, click Configure or Edit.
- From the Source address choice list, select Source address.
- Next to Source address, click Add new
entry.
- From the Value keyword list, select any and click OK.
- From the Destination address choice list, select Destination address.
- Next to Destination address, click Add
new entry.
- From the Value keyword list, select any and click OK.
- From the Application Choice list, select Application.
- Next to Application, click Add new entry.
- In the Value keyword list, type junos-telnet and click OK.
- Next to Then, click Configure or Edit.
- From the Action list, select Permit and click OK.
- Next to Permit, click Configure or Edit.
- Next to Firewall Authentication, click Configure or Edit.
- From the Auth type list, select Pass through.
- Next to Pass through, click Configure or Edit.
- In the Client match box, type FW Client1 and
click OK.
- To authenticate the firewall user authentication, telnet FWClient1 to host2.
- If you are finished configuring the device, commit the
configuration.
- To check the configuration, see Verifying Firewall User Authentication.
[Contents]
[Prev]
[Next]
[Index]
[Report an Error]