Juniper Networks IDP75 ユーザーズマニュアル

ページ / 68
Connecting to the Sensor 
„ 
27
Chapter 4: Configuring the IDP Sensor
Networking
„
Speed and duplex settings for IDP sensor interfaces. (Normally, these can be 
set to auto-detect. With some switches, the speed and duplex settings have 
to be set manually.)
„
The VLAN interfaces you want to configure. 
Virtual LANs are not available for transparent or sniffer mode, though 
security policies can apply rules based on VLAN tagging in these modes.
„
The virtual router information you want to configure.
 
More information on virtual routers can be found in the NetScreen-Security 
Manager Administrator’s Guide
.
„
The IP address and netmask for the management interface. 
„
Forwarding interface information, such as, which ports will be connected to 
which external devices.
„
Routing table.
System
„
Enable/configure DNS. 
 
This is optional. Set if you want the sensor to be able to do DNS lookups.
„
Time and time zone.
„
Enable/configure NTP.
 
This is optional. Set if you want the IDP device to get its time information 
from an NTP server.
„
Enable/configure RADIUS support.
 
This is optional. Set if you want certain users to be authenticated using 
RADIUS. You can enable RADIUS authentication for CLI access, ACM access, 
or both.
„
Enable/configure SSH access.
 
This is optional. Set if you want to access the sensor using a terminal 
window, or if you want to be able to upload upgrade files to the sensor.
See the ACM online help for more information on system settings.
Management
„
IP address of the primary and secondary NSM GUI servers for this sensor and 
a one-time password. 
 
These values need to be set only if you are using the IP unreachable method 
of adding devices to NSM. See the NetScreen-Security Manager 
Administrator’s Guide
.
„
Enable/configure ACM access.
 
Set if you want ACM to start automatically when the sensor boots. 
Otherwise, you have to start ACM from the command line before you access 
it.
„
Instant Virtual Extranet (IVE) communications.
 
Select Reset IVE OTP if you want to generate a one-time password for 
IVE-IDP communications. 
Complete information for configuring IVE-IDP communications is in the IVE 
documentation.
Done
View the current configuration and then save and apply the configuration to the 
IDP sensor. (The Save Only option button tells the sensor to save the 
configuration into a working file, but not to apply the configuration to the 
sensor. The Save & Apply option button tell the sensor to apply the changes.) 
You need to click Confirm Configuration, and then reboot the IDP sensor for 
the changes to take effect.
Table 13:  Information Needed for ACM Configuration   (continued)
Section
Configuration Information