Help us improve your experience.

Let us know what you think.

Do you have time for a two-minute survey?

 
 

Onboard Greenfield SRX Series Firewalls to Juniper Security Director Cloud Using QR Code

This topic walks you through the steps to onboard a new cloud-ready Juniper Networks® SRX Series Firewall to Juniper Security Director Cloud using a QR code.

To begin onboarding SRX Series Firewalls to Juniper Security Director Cloud, it is essential to first determine whether the device is cloud-ready or non-cloud-ready.

  • Cloud-ready SRX Series Firewalls have a QR or claim code on the chassis for quick onboarding to Juniper Security Director Cloud. Cloud-ready SRX Series Firewalls offer advanced security services, seamless integration, and protection for cloud deployments. You can onboard the cloud-ready SRX Series Firewalls using your mobile phone by scanning the QR code and following the guided steps in the portal.

  • Non-cloud-ready SRX Series Firewalls do not have QR or claim codes and require manual onboarding. You can onboard the non-cloud-ready SRX Series Firewalls using CLI commands or Zero Touch Provisioning (ZTP).

For supported supported cloud-ready and non-cloud-ready SRX Series Firewalls, see Juniper Security Director Cloud Supported Firewalls.

Before You Begin

Install the rack and power on your cloud-ready SRX Series Firewall. For instructions specific to your device, see the applicable hardware guide.

Note:

DHCP is enabled on all interfaces on cloud-ready SRX Series Firewalls in the factory-default configuration. Make sure that you can connect to the Internet using one of the interfaces.

Workflow

Figure 1: Onboard SRX Series Firewalls to Juniper Security Director Cloud in Greenfield Deployment Flowchart titled Greenfield Onboarding outlining steps for setting up and managing Juniper Networks' Cloud-ready SRX Series Firewalls using Juniper Security Director Cloud. Steps include installing the firewall, deciding on subscriptions, creating an account, adding firewall via QR code, associating with Security Director Cloud, and starting management. Note indicates cloud-ready status with QR claim code on the firewall.

Onboard your SRX Series Firewall to Juniper Security Director Cloud

  1. Decide which Juniper Security Director Cloud Subscriptions you need. Contact your sales representative or account manager to purchase subscriptions. You can also use a 30-day trial subscription that is available in the portal by default.
  2. Go to https://sdcloud.juniperclouds.net/ and click Create an organization account.

    Follow the on-screen instructions to activate your account. It takes up to 7 working days to approve your account.

  3. Log in to the Juniper Security Director Cloud portal, click Add Subscriptions, enter details, and click OK.Juniper Security Director Cloud interface showing Add Subscriptions pop-up in Subscriptions section under Administration menu with navigation options on the left.

    View your added subscriptions from Subscriptions > SRX Management Subscriptions. If you do not see your subscriptions, go to Administration > Jobs page to view the status.

  4. Use your mobile phone to scan the QR code on the cloud-ready SRX Series Firewall. Click the displayed link and select Claim to SD Cloud to go to Juniper Security Director Cloud login page.Juniper Networks device registration interface with serial AA1111AA1111, model SRXxxxx, MAC address XX1111XX1111, and buttons for claiming to Mist or SD Cloud.
  5. Read the prerequisites, enter your e-mail address, and click Next.Login screen for Juniper Security Director Cloud. Enter email to proceed. Click Next to continue. View Prerequisites for device setup and account creation at sdcloud.juniperclouds.net.
  6. Follow the on-screen instructions to sign in.Login page for Juniper Security Director Cloud with username, password fields, SSO, Juniper.net sign-in options, and a back link.
  7. Select the organization to add your device, enter the root password, and click Add Device.Juniper Security Director Cloud interface showing fields for organization, email userjuniper.net, device serial AA1111AA1111, model SRXxxxx, root password option, and Add Device button.

    Congratulations! You've successfully registered your device to the organization and added your device to Juniper Security Director Cloud. Log out from the page in your mobile phone.Device registration confirmation for organization DEMO; next steps: power on device, log in to Juniper Security Director Cloud portal to manage. Logout button available.

  8. Power on your cloud-ready SRX Series Firewall and log in to Juniper Security Director Cloud portal using your laptop or desktop.

    View the newly added device on the SRX > Device Management > Devices page.

    Device management interface showing three devices: DEMO-AA1111AA1111, DEMO-TEST01, and srx1111111111111. Lists host name, device group, inventory status, device config status, management status, device health, subscriptions, OS version, and product model. Options for security logs configuration and manage subscriptions are available.
    Note:

    Device discovery takes a few seconds to complete. After successful device discovery, you can see the following status updates:

    • Inventory Status: In Sync

    • Device Config Status: In Sync

    • Management Status: Up

    Congratulations! You've successfully onboarded your cloud-ready SRX Series Firewall. You’re now ready to associate devices to your Juniper Security Director Cloud subscription.

Associate your SRX Series Firewall with Juniper Security Director Cloud Subscription

  1. Go to SRX > Device Management > Devices, select the device, and click Manage Subscriptions. Follow the on-screen instructions.Manage Subscriptions interface: 1 device selected; selected subscription 10Devices S-SD-1-C-1; 1 of 10 devices in use; expires 08 Nov 2027; Add Subscriptions link; Cancel and OK buttons.
  2. Verify that the Subscriptions column displays the subscription name for your device. Devices management interface showing a table with columns: Host Name, Device Group, Inventory Status, Device Config Status, Management Status, Device Health, Subscriptions, OS Version, Product. Key device statuses: DEMO-AA1111AA1111 is In Sync, Up, No data for health. DEMO-TEST01 and srx111111111111 have Discovery Not Initiated, No Subscription. Buttons for Security Logs Configuration, Manage Subscriptions, and a More dropdown for additional options.

    Congratulations! You have successfully associated your device to Juniper Security Director Cloud.