AppSecure is a suite of application security capabilities that identifies applications for greater visibility. It utilizes advanced application identification and classification to deliver greater visibility, enforcement, control, and protection over the network. AppSecure detects application behaviors and weaknesses that prevent application-borne security threats that are difficult to detect and stop.
| Feature hierarchy | Feature Name |
|---|---|
| Application Security / | DYCE randomizer |
| Application Security / Application Firewall / | Application Firewall (AppFW) |
| Application Security / Application Firewall / | Application Firewall: Match rule association with session |
| Application Security / Application Firewall / | Application Firewall: Application group |
| Application Security / Application Firewall / | Application Firewall: Expanded rule set |
| Application Security / Application Firewall / | Application Firewall: IPv6 |
| Application Security / Application Firewall / | Application Firewall: J-Web |
| Application Security / Application Firewall / | Redirect HTTP/HTTPS traffic when it's denied or rejected by application firewall |
| Application Security / Application Firewall / | Unified Policies (Application Firewall) |
| Application Security / Application Firewall / | Unified policies |
| Application Security / Application Identification / | Application ID Management - Integration into Firewall (IDP) |
| Application Security / Application Identification / | Application Identification (AppID) |
| Application Security / Application Identification / | Application Signature Package Fault Handling & Self Remediation |
| Application Security / Application Identification / | Application groups |
| Application Security / Application Identification / | Application identification |
| Application Security / Application Identification / | Application identification (AppID) for nested applications with threat prevention |
| Application Security / Application Identification / | Application identification at Layer 3 and Layer 4 |
| Application Security / Application Identification / | Application identification support for micro-applications |
| Application Security / Application Identification / | Application signature pack rollback |
| Application Security / Application Identification / | Application signature package enhancements |
| Application Security / Application Identification / | CLI command and system log message to identify deprecated application groups |
| Application Security / Application Identification / | CLI enhancements to support J-Web in application identification |
| Application Security / Application Identification / | Cloud Access Security Broker (CASB) policies |
| Application Security / Application Identification / | Cloud Access Security Broker (CASB) service |
| Application Security / Application Identification / | Custom application enhancements |
| Application Security / Application Identification / | Custom application signatures |
| Application Security / Application Identification / | Custom application signatures and signature groups |
| Application Security / Application Identification / | Downloading the Junos OS application signature package from a proxy server |
| Application Security / Application Identification / | First-packet classification |
| Application Security / Application Identification / | Granular control for DNS-over-HTTP and DNS-over-TLS application traffic |
| Application Security / Application Identification / | Heuristic detection of encrypted P2P applications |
| Application Security / Application Identification / | IPv6: Application identification (AppID) |
| Application Security / Application Identification / | JDPI Enhancements |
| Application Security / Application Identification / | JDPI-Decoder engine separation |
| Application Security / Application Identification / | JDPI-Decoder engine version upgrade |
| Application Security / Application Identification / | Listing of micro-applications and non-configurable applications |
| Application Security / Application Identification / | Nested application identification enhancement |
| Application Security / Application Identification / | New service for identifying applications |
| Application Security / Application Identification / | Next-generation application identification |
| Application Security / Application Identification / | Next-generation application identification predefined signatures |
| Application Security / Application Identification / | Offline installation of application signature packages |
| Application Security / Application Identification / | Onbox Application Identification Statistics |
| Application Security / Application Identification / | Packet capture for unknown application traffic |
| Application Security / Application Identification / | Packet capture of unknown applications details per session |
| Application Security / Application Identification / | Pre-ID default policy enhancements |
| Application Security / Application Identification / | Risk values in Application Signature |
| Application Security / Application Identification / | Subject Alternative Name in custom application signatures |
| Application Security / Application Identification / | Subscription License Enforcement |
| Application Security / Application Identification / | Tunnelling applications support in unified policies |
| Application Security / Application Multipath Routing / | Application-based multipath routing |
| Application Security / Application Multipath Routing / | Application-based multipath routing: APBR Profile |
| Application Security / Application Multipath Routing / | Application-based multipath routing: IPv6 traffic use cases |
| Application Security / Application Multipath Routing / | Application-based multipath routing: Reverse traffic |
| Application Security / Application Multipath Routing / | Application-based multipath routing: Reverse traffic, out-of-order packets |
| Application Security / Application Policy-Based Routing / | APBR: Application services bypass |
| Application Security / Application Policy-Based Routing / | APBR: Application-based load balancing |
| Application Security / Application Policy-Based Routing / | APBR: DSCP support in APBR rule match criteria |
| Application Security / Application Policy-Based Routing / | APBR: Default mechanism to forward the traffic through APBR rule |
| Application Security / Application Policy-Based Routing / | APBR: Midstream APBR |
| Application Security / Application Policy-Based Routing / | APBR: Midstream APBR: Selectively disable |
| Application Security / Application Policy-Based Routing / | APBR: Multinode High Availability |
| Application Security / Application Policy-Based Routing / | APBR: Policy schedulers |
| Application Security / Application Policy-Based Routing / | APBR: URL category-based routing |
| Application Security / Application Policy-Based Routing / | APBR: User source identity in APBR policies |
| Application Security / Application Policy-Based Routing / | Advanced policy-based routing (APBR) |
| Application Security / Application Quality of Experience / | AppQoE: Application Path Selection Based on Link Preference and Priority |
| Application Security / Application Quality of Experience / | AppQoE: Application-level logging |
| Application Security / Application Quality of Experience / | AppQoE: DSCP-tagged traffic |
| Application Security / Application Quality of Experience / | AppQoE: Dual stacking of IPv4 and IPv6 |
| Application Security / Application Quality of Experience / | AppQoE: Granular APBR rules |
| Application Security / Application Quality of Experience / | AppQoE: High availability mode |
| Application Security / Application Quality of Experience / | AppQoE: IPv6 traffic |
| Application Security / Application Quality of Experience / | AppQoE: Multihoming with active-active deployment |
| Application Security / Application Quality of Experience / | AppQoE: SLA link preference enhancement |
| Application Security / Application Quality of Experience / | AppQoE: SaaS application support |
| Application Security / Application Quality of Experience / | Application Quality of Experience (AppQoE) |
| Application Security / Application Quality of Experience / | Application quality of experience scaling support |
| Application Security / Application Quality of Service / | AppQoS |
| Application Security / Application Quality of Service / | AppQoS: Rate-limiting |
| Application Security / Application Tracking / | Application Tracking (AppTrack) |
| Application Security / Application Tracking / | Application Tracking: APBR support |
| Application Security / Application Tracking / | Application Tracking: IPv6 addressing |
| Application Security / Application Tracking / | Application Tracking: Logging infrastructure |
| Application Security / Application Tracking / | Application Tracking: User role integration into AppTrack logs |
| Application Security / Application Tracking / | Application tracking: Categories and subcategories |
| Application Security / SSL Proxy / | AppSecure - Session resumption and renegotiation with SSL proxy |
| Application Security / SSL Proxy / | Certificate management supports new bit length for the Elliptic Curve Digital Signature Algorithm (ECDSA) key |
| Application Security / SSL Proxy / | Custom URL category support for SSL forward proxy |
| Application Security / SSL Proxy / | Default trusted CA certificates for SSL forward proxy |
| Application Security / SSL Proxy / | Elliptic Curve Digital Signature Algorithm (ECDSA) cipher |
| Application Security / SSL Proxy / | Explicit Web Proxy support is available for on-premises deployment |
| Application Security / SSL Proxy / | Operational commands for SSL sessions |
| Application Security / SSL Proxy / | Optimizing SSL/TLS performance for HTTPS traffic |
| Application Security / SSL Proxy / | Perfect Forward Secrecy (PFS) |
| Application Security / SSL Proxy / | SNI-based dynamic application information for SSL proxy profile |
| Application Security / SSL Proxy / | SSL Decryption Mirroring |
| Application Security / SSL Proxy / | SSL Forward Proxy |
| Application Security / SSL Proxy / | SSL Forward Proxy URL category policy |
| Application Security / SSL Proxy / | SSL Proxy |
| Application Security / SSL Proxy / | SSL Proxy Enhancements |
| Application Security / SSL Proxy / | SSL Proxy for Logical Systems |
| Application Security / SSL Proxy / | SSL Reverse Proxy |
| Application Security / SSL Proxy / | Secure Web Proxy support |
| Application Security / SSL Proxy / | Security Policy Support for Explicit Web Proxy |
| Application Security / SSL Proxy / | Server certificates with key size 4096 bits |
| Application Security / SSL Proxy / | TLS 1.3 support for session resumption using PSK |
| Application Security / SSL Proxy / | TLS profiles in Dynamic Address Feed Servers |
| Application Security / SSL Proxy / | TLS version 1.3 support for SSL proxy |
| Application Security / SSL Proxy / | Transparent Web Proxy |
| Application Security / SSL Proxy / | User authentication for Explicit Proxy |