Use this workflow to set up Juniper ATP Cloud, onboard and enroll SRX Series
Firewalls, enable threat prevention features, and monitor security events and threats through
the Juniper ATP Cloud portal.
Step 1: Setup and Log In to Juniper ATP Cloud Portal
| Task |
Purpose |
More Information |
| Obtain and activate license |
Obtain Juniper ATP Cloud license to enable required security features
and ensure service entitlement. |
Manage the Juniper ATP Cloud
License |
| Register Juniper ATP Cloud account |
Set up the Juniper ATP Cloud account, create and configure your
organization to manage devices and security policies. |
Register a Juniper ATP Cloud
Account |
| Log in to Juniper ATP Cloud Portal |
Log in to the Juniper ATP Cloud portal to manage and monitor security
services through a centralized interface. |
Juniper ATP Cloud Web UI
Overview |
Step 2: Enroll and Configure Your Devices
| Task |
Purpose |
More Information |
| Enroll your SRX Series Firewalls in Juniper ATP Cloud |
Enroll your SRX Series Firewalls with Juniper ATP Cloud to begin threat
analysis and data exchange. |
|
| Configure Security Zones and Policies on SRX Series Firewalls |
Configure Juniper ATP Cloud inspection policies, interfaces and security
zones on your SRX Series Firewalls. |
|
Step 3: Configure Juniper ATP Cloud Features on SRX Series Firewall
| Task |
Purpose |
More Information |
| Configure Encrypted Traffic Insights (ETI) and Adaptive Threat
Profiling |
Enable ETI and Adaptive Threat Profiling to:
-
Detect encrypted C&C communications
-
Identify high-risk users and hosts
-
Apply automated threat detection and enforcement policies on SRX
Series Firewalls
|
|
| Configure DNS features |
Configure DNS SecIntel and DNS threat protection to detect malicious
domains, DGA activity and DNS tunneling. Enable DNS logging for monitoring
and investigation. |
|
| Configure Juniper ATP Cloud with GeoIP |
Configure GeoIP policies to identify, allow, or block traffic based on
geographic location. |
Configure Juniper ATP Cloud with
Geolocation IP |
| Configure AI Predictive Threat Prevention on SRX Series Firewall |
Enable Flow-Based Antivirus and ML-Based Threat Detection to block known
malware and detect zero-day threats using AI-driven analysis. |
|
Step 4: Monitor Juniper ATP Features in the Portal
| Task |
Purpose |
More Information |
| Monitor threats sources, hosts, and security events |
Monitor hosts, threats, DNS events, encrypted traffic insights, and
security statistics to identify compromised devices and track threat
activity across the network. |
|
Step 5: Configure Juniper ATP Features in the Portal
| Task |
Purpose |
More Information |
| Create allowlists and blocklists |
Create allowlists and blocklists to permit trusted content and block
known threats. |
Create Allowlists and
Blocklists |
| Create file inspection profiles and adaptive threat profiling
feeds |
Create file inspection profiles and adaptive threat profiling feeds to
simplify policy management and automate risk-based threat
enforcement. |
|
| Configure SecIntel feeds and threat intelligence sharing |
Configure and share threat intelligence feeds to automate detection and
blocking of known threats. |
|
Step 6: Juniper ATP Cloud Administration
| Task |
Purpose |
More Information |
| Manage ATP Cloud Administration |
Manage ATP Cloud users, Multifactor Authentication (MFA), application
tokens, and Single Sign-On (SSO). |
|
What's Next
Now that you've completed the Juniper ATP Cloud workflow, explore advanced ATP Cloud
capabilities such as threat investigation, malware analysis reports, policy enforcement,
alert monitoring, and threat intelligence insights to improve threat visibility,
streamline security operations, and strengthen your organization's security posture.