Help us improve your experience.

Let us know what you think.

Do you have time for a two-minute survey?

 
 

Onboard Devices and Associate with Subscriptions

After the organization account is created and the subscriptions are added in Juniper Security Director, you can onboard your SRX Series Firewalls and associate these devices with correct subscriptions. Next, verify the imported security policies, NAT policies, and security log configurations on the onboarded devices.

For more information about subscriptions, see <Subscriptions topic>.

To onboard your SRX Series Firewalls and associate these devices with subscriptions:

  1. Select Inventory > Devices, and click the plus icon () to add your devices.

    To know about supported devices, see Juniper Security Director Supported Firewalls.

  2. Click Adopt SRX Devices and select one of the following:
    • SRX Devices

    • SRX Clusters

    • SRX Multinode High Availability (MNHA) Pairs

    Screenshot of Juniper Security Director interface for adding SRX devices, showing type selection, instructions, and input field to specify the number of devices.Follow the on-screen instructions to continue. For more information, see Add Devices.
  3. Copy and paste commands from the devices page to the SRX Series Firewall or the primary cluster device console. Then commit the changes. It will take few seconds for device discovery. After device discovery is successful, verify the following fields on the Devices page:
    • Management Status changes from Discovery in progress to Up.

    • Inventory Status and Device Config Status changes from Out of Sync to In Sync.

      In case of discovery failure, go to the Admin > Jobs page and view the status.

  4. Go to Inventory > Devices select the device, and click Manage Subscriptions. Follow the on-screen instructions.Manage Subscriptions interface showing device subscription options. One device selected with subscription paid1 S-SD-SRX-S1-OP-5 expiring 9 December 2029. Usage 0 of 10 devices. Options to add subscriptions and buttons to cancel or confirm with OK.
  5. Verify that Subscriptions column displays the subscription name for your device. Device management interface showing three devices: Traffic-Demo-Test, SRX1500-Test, Demo-Test -vSRX140. All devices are in sync. SRX1500-Test management status is Discovery Not Initiated, option to Adopt Device. Traffic-Demo-Test has subscription paid1.

    Congratulations! You've successfully onboarded your SRX Series Firewalls to Juniper Security Director and associated these devices to the subscriptions.

    You can now verify the configurations on your onboarded devices.

Verify Configurations on Adopted Devices

  • Go to Security > Security Policies and verify the imported security policies.

  • Go to Network > NAT Management > NAT Policies and verify the imported NAT policies.

  • Go to Inventory > Devices, click Security Logs Configuration, and verify the security log configurations.

If you've set up security policy, NAT, IPSec VPN, and logs on the device, these configurations will be imported into Juniper Security Director.

You can now manage your devices, device discovery profiles, device groups, security policies, NAT policies, and so on.