SHARE
Follow this article on Twitter Facebook LinkedIn Bookmark and Share
Home >> Information Architecture >> Identity Management

Juniper adds router, switch coverage to security manager

Juniper adds router, switch coverage to security manager

By:  Howard Solomon  On: 04 Aug 2008 For: Network World Canada Creator

Juniper now calls its NSM software Network Security Manager after adding coverage for many of its switches and routers. The company now claims it offers a unified security and infrastructure management solution

Juniper Networks has upgraded and renamed its centralized security platform to cover many of the company’s routers and switches, less than a year after introducing the product.

When first released, Netscreen Security Manager (NSM) managed policies of Juniper’s security products, the Firewall/IP Sec, VPN and Intrusion Detection and Prevention (IDP) lines. As of this week the renamed Network Security Manager 2008.1 adds security management over Juniper’s J- and EX-series of routers and switches.

Being able to centrally control more devices will help lower capital expenses, said Sanjay Agarwal, Juniper’s senior product line manager for network management. “What we’re trying to address is providing a unified app for simplified management of all these devices in the network infrastructure which helps customers reduce their cost of ownership.”

The new NSM also links to Juniper’s Infranet Controller unified access control appliances to create a centralized security and infrastructure system covering switches, routers, VPNs and access control, he said. New features have been added to Infranet’s UAC 2.2 software, as well as two new members of the Infranet line, one of which scales up to 30,000 end users in a cluster.

Many of these devices share Juniper’s Junos operating system, which is updated four times a year. With NSM these updates are automatically downloaded, managed and installed, said Agarwal.

With NSM 2008.1, administrators can create role-based templates and configuration groups for making policy changes. For example, a global change on all of an organization’s DNS server settings can be accomplished quickly, Agarwal said.

All devices managed by NSM 2008.1 are linked through the standards-based Device Management Interface (DMI). NSM handles common management features like configuration file management, configuration management, inventory management, device discovery and boostrap.

In addition, there’s an XML/SOAP API for customers and partners who want to integrate it with applications they’ve created.

NSM 2008.1 also compliments Juniper’s Security Threat Response Manager (STRM), Agarwal said, which collects log data on possible threats, by automatically acting on policies triggered by a threat threshold.

However, NSM does not cover Juniper’s T-series routers.

As before, customers have two purchase options: NSMXpress is an appliance for controlling up to 500 devices. For environments with more than that customers have to buy the server-based NSM Central software, which runs on Red Hat Linux 4.0 and up or Sun Solaris 10.

Juniper also announced upgrades to the software that runs its Infranet unified access control appliances. UAC 2.2 has added support for Microsoft Windows Statement of Health (SOH) and its Embedded NAP agent, meaning Infranet Controllers can now be used to help manage upgrades to Windows XP Service Pack 3 and Windows Vista.


Sign up for our Newsletters












Print |  Views: 1001   |   Rating:offoffoffoffoff  (0 votes)
Rate this article on a scale of
1 to 5 stars,5 being the best.




Howard Solomon Howard Solomon Howard Solomon is assistant editor of Network World Canada covering network infrastructure and communications issues. An IT journalist  since 1997, he has written for several of IT... more

Related Content

Canada Revenue Agency invests in IT security
Canada Revenue Agency invests in IT securityAs Canadians start preparing their taxes, the federal organization responsible for NetFile is making progess on a slew of initiatives designed to protect their data. Read the coverage from GovSym
Security 3.0: Chess, not Whac-A-Mole
Security 3.0: Chess, not Whac-A-MoleCompanies that want to spend less of their IT budget on security and improve its effectiveness must “bake in” security across their operations so it becomes a part of the business process, not an afterthought.
Companies seeking single security view
Companies seeking single security viewThere’s chaos brewing within the IT security infrastructure and it’s something that can potentially render various security initiatives inadequate, should order fail to triumph.
Dan Swanson: Compliance, fraud, and business continuity
today’s information security professionals need to study current and upcoming regulatory compliance requirements to get ahead of the curve. we also need to help protect the organization from fraud and waste and of course that next disaster. this week’s resources involve
Questions about Conficker
over the weekend i was interviewed by cbc’s sunday evening news show about conficker and the possibly grim outlook for pc users everywhere on april 1. maybe not my best interview, but what bugs me now is that i was just a little too late to provide more detail on how you can tell who’s been infected.

Comments (0)

No Comments!
Name: (required) eMail: (optional)

Your email address will not appear online and will be used only if the editor wishes to contact you personally for additional comments.