Help us improve your experience.

Let us know what you think.

Do you have time for a two-minute survey?

 
 

Authentication and Access Control

  • JIMS support FQDN as primary and secondary address (SRX1500, SRX4100, SRX4200, SRX4600, SRX5400, SRX5600, SRX5800, and vSRX3.0)—Starting in Junos OS Release 23.2R1, you can get Fully Qualified Domain Names (FQDN) as primary & secondary support where each FQDN can have several entries per FQDN resolving one or more JIMS server for resilience purpose at edit services user-identification identity-management connection (primary | secondary) address hierarchy level.

    [See identity-management.]

  • JIMS support Junos PKI infrastructure (SRX1500, SRX4100, SRX4200, SRX4600, SRX5400, SRX5600, SRX5800, and vSRX3.0)—Starting in Junos OS Release 23.2R1, you configure ca-profile under set security pki and assign ca-profile under JIMS by using ca-profile option at the edit services user-identification identity-management connection (primary | secondary) hierarchy level. You can perform CRL and OCSP checks based on settings under set security pki for the corresponding ca-profile.

    With the introduction of a new ca-profile, we will deprecate the existing ca-certificate option at the edit services user-identification identity-management connection (primary | secondary) hierarchy level.

    [See identity-management.]

  • SSL proxy support (cSRX)—Starting in Junos OS Release 23.2R1, we support SSL proxy. SSL proxy is a transparent proxy that performs SSL encryption and decryption between the client and the server.

    [See SSL Proxy and show services ssl proxy statistics.]