Feature Explorer AI AI

×

Subscribe now to get the Latest Updates

Watch a 2-minute overview video

User role firewall providing flexibility and higher security

More Information:

User role firewall providing flexibility and higher security

By integrating user firewall policies, administrators can permit or restrict network access of employees, contractors, partners, and other users based on the roles they are assigned. A new match criteria, source-identity, defines applicable roles for each policy. In this way, traffic can be permitted or denied access based on the role of the user, as well as the zone pair, source and destination IP addresses, and application. To enhance a user role firewall implementation, the SRX Series device can be configured to interact with a Junos Pulse Access Control Service, providing a source of dynamic user role information. The Access Control Service can also be configured as a relay between a third-party authentication server and the SRX Series device. In this configuration, SPNEGO and Kerberos protocols provide a single sign-on environment for dynamic role provisioning.
Product / Application Software Introduced Release
SRX300 Junos OS 15.1X49-D35
SRX320 Junos OS 15.1X49-D35
SRX340 Junos OS 15.1X49-D35
SRX345 Junos OS 15.1X49-D35
SRX380 Junos OS 20.1R1
SRX550 Junos OS 12.1R1
SRX550 HM Junos OS 15.1X49-D30
SRX5400 Junos OS 12.1X46-D10
SRX5600 Junos OS 12.1R1
SRX5800 Junos OS 12.1R1