Block Facebook using Juniper SRX
Published By rsivanandan On Tuesday, July 13th 2010. Under Access-Control, Juniper Tags: block facebook, block twitter
Continuation to the last post of MPF on Cisco ASA series, Juniper’s nextGen firewalls (SRX series that run JunOS software) can also be used for blocking unwanted sites. While SRX supports integration to SurfControl/WebSense etc, this post is more focused on the inbuilt capabilities just like what Cisco’s ASA had. ... Continue Reading
RDP Connection through PIX
By default if you want to allow rdp access to a machine inside the PIX from internet, you need to have static defined for nat and an access-list to allow that traffic. For example, if we want to do this with the ip assigned on the outside interface, we'd ... Continue Reading
Split-Tunneling Good or Bad ?
Published By rsivanandan On Thursday, July 19th 2007. Under Access-Control, Attacks/Exploits, Juniper, Tech in general, VPN
In the VPN configuration this seems to be a host discussion; so here we go There are 2 options of internet traffic for the VPN users; Split-Tunneling enabled :: This means all the corporate traffic goes through the vpn tunnel and all the internet (local browsing etc) goes through ... Continue Reading
Mac Based Access-Control
Published By rsivanandan On Saturday, July 22nd 2006. Under Access-Control
Ever faced a situation where-in you have your servers in a single Vlan (same subnet) and you want to prevent them talking to each other? You may want to do it for security purposes, what you are securing is that if any one of the server gets infected you don't ... Continue Reading
