Help us improve your experience.

Let us know what you think.

Do you have time for a two-minute survey?

 
 

About the Metadata Streaming Policy Page

You are here: Security Policies & Objects > Metadata Streaming Policy.

Configure a security metadata streaming policy on SRX Series Firewalls to send a network traffic metadata and connection patterns to Juniper ATP Cloud. Using DNS, a metadata streaming profile protects and defends your network from advanced threats. You must assign the metadata streaming profile to the metadata streaming policy. For more information on the metadata streaming profile, see About the Metadata Streaming Profile Page. After configuring the metadata streaming policy, assign it to the security policy at zone-level.

Domain Name System (DNS) Domain Generation Algorithm (DGA) generates seemingly random domain names that are used as rendezvous points with potential C&C servers. DNS DGA detection uses machine learning models as well as known pre-computed DGA domain names to provides domain verdicts, which helps in-line DNS query blocking and sinkholing on SRX Series Firewalls.

Encrypted Traffic Insights (ETI) detects malicious threats that are hidden in encrypted traffic without intercepting and decrypting the traffic.

Benefits of Metadata Streaming

  • Provide all SRX Series Firewalls with a SaaS-based, high-performance, and low-overhead solution.

  • Deploy easily to existing SRX environments.

  • SRX can detect and act on Domain Name System (DNS) without any sensors.

Tasks You Can Perform

You can perform the following tasks from this page:

  • Create a metadata streaming policy. See Create a Metadata Streaming Policy.

  • Edit a metadata streaming policy. See Edit a Metadata Streaming Policy.

  • Delete a metadata streaming policy. See Delete a Metadata Streaming Policy.

  • Show or hide columns in the Metadata Streaming Policy table. To do this, use the Show Hide Columns icon in the upper-right corner of the page and select the options to show or deselect to hide options on the page.

  • Advanced search for metadata streaming policies. To do this, use the search text box present above the table grid. The search includes the logical operators as part of the filter string. In the search text box, when you hover over the icon, it displays an example filter condition. When you start entering the search string, the icon indicates whether the filter string is valid or not.

    For an advanced search:

    1. Enter the search string in the text box.

      Based on your input, a list of items from the filter context menu appears.

    2. Select a value from the list and then select a valid operator to perform the advanced search operation.

      Note:

      Press Spacebar to add an AND operator or an OR operator to the search string. Press backspace at any point of time while entering a search criteria, only one character is deleted.

    3. Press Enter to display the search results in the grid.

Field Descriptions

Table 1 describes the fields on the Metadata Streaming Policy page.

Table 1: Fields on the Metadata Streaming Policy Page

Field

Description

Source Zone

Displays the name of the source zone associated with the metadata streaming policy.

Destination Zone

Displays the name of the destination zone associated with the metadata streaming policy.

Metadata Streaming Profile

Displays the name of the metadata streaming profile associated with the metadata streaming policy.