Support Support Downloads Knowledge Base Case Manager My Juniper Community

Knowledge Base

Search our Knowledge Base sites to find answers to your questions.

Ask All Knowledge Base Sites All Knowledge Base Sites JunosE Defect (KA)Knowledge BaseSecurity AdvisoriesTechnical BulletinsTechnotes Sign in to display secure content and recently viewed articles

Restrict management to specific IP addresses

0

0

Article ID: KB4035 KB Last Updated: 04 Jun 2010Version: 3.0
Summary:
Restrict management to specific IP addresses
Symptoms:
System IP is 0.0.0.0
Restrict management of the box
Restrict one connection to manage the NetScreen Only allow one connection to manage the NetScreen
Solution:

Specify the IP addresses that are allowed to manage the box by setting up manage-ip addresses.

Example:  Assume only one user is allowed to manage the NetScreen, and that user's IP address will always be 10.1.1.10.  To restrict access to the NetScreen from this one user:

From the WebUI:

  1. Click Admin button
  2. Click New Management Client IP
    1. IP Address: 10.1.1.10
    2. NetMask: 255.255.255.255

From the Command Line Interface (CLI):

set admin manager-ip 10.1.1.10 255.255.255.255 [Enter]

This configuration only allows the user at IP address 10.1.1.10 to manage the NetScreen.

Here is the problem or goal:

  • Restrict management of the box
  • Restrict one connection to manage the NetScreen
  • Only allow one connection to manage the NetScreen
  • Restrict management from one or two IP addresses on the trust side

Problem Environment:

  • System IP is 0.0.0.0

Applicable Products:

  • NetScreen-5
  • NetScreen-5XP
  • NetScreen-10
  • NetScreen-25
  • NetScreen-50
  • NetScreen-100
  • NetScreen-204
  • NetScreen-208
  • NetScreen- 500
  • NetScreen-1000

Applicable ScreenOS:

  • 2.00
  • 2.01
  • 2.10
  • 2.50
  • 2.6.0
  • 2.6.1
  • 2.7.1
  • 2.8.0
  • 3.0.0
  • 3.0.1
  • 3.0.2
  • 3.1.0


Comment on this article > Affected Products Browse the Knowledge Base for more articles related to these product categories. Select a category to begin.

Getting Up and Running with Junos

Getting Up and Running with Junos Security Alerts and Vulnerabilities Product Alerts and Software Release Notices Problem Report (PR) Search Tool EOL Notices and Bulletins JTAC User Guide Customer Care User Guide Pathfinder SRX High Availability Configurator SRX VPN Configurator Training Courses and Videos End User Licence Agreement Global Search