部署:NSM server + IDP inline Sensor
NSM安装到Redhat Enterprise 4.0上用于接收Sensor的log和配置Sensor的策略。
IDP inline Sensor配置管理IP 使用Console就可以了
通过https方式登录Sensor进行相应配置:
两种配置方式:1 Quick Start 、2 ACM
1Quick Start就是向导配置很简单
2ACM就是Quick Start中的分项设置
Welcome to the Juniper Networks IDP 800 Appliance Configuration Manager! This menu provides access to the main features of the IDP Appliance Configuration Manager (ACM).
配置界面上的设置如下所示:
Configuration Status
- Configuration has been saved and applied.
- The IDP does not need a reboot at this time.
Main Options
- Reconfigure this IDP via the ACM wizard
- View/Apply Current Configuration
- File Download Manager
- Upload and replace ACM configuration file
ACM menu
- Reset root/admin Passwords
- Change Host/Domain name
- Change Sensor Mode
- Reconfigure HA (inline modes only)
- Reconfigure Radius
- Reconfigure Network Interface Hardware
- Reconfigure VLAN/Virtual-Router Support
- Reconfigure IP Networking
- Reconfigure DNS
- Reconfigure Date/Time
- Reconfigure NTP
- Reconfigure NSM Server Communication and IDP IVE Communication
- Modify SSH Access
- Modify IDP ACM Access
配置完成IDP Sensor后,进入NSM server管理端,需要在主机安装NSM Client进行管理,需要PC安装Java。
打开NSM Client键入NSM Server IP输入账号登陆
添加IDP设备到NSM server中,之后进行策略配置。
转载于:https://blog.51cto.com/demon1860aa/666210