Hi Matthew -

On Fri, Sep 02, 2011 at 02:28:03PM -0400, Matthew S. Crocker wrote:
> What is the recommend/preferred way to secure the SSH & Web access to
> a piece of JunOS gear?  I have a couple routers (MX80) and switches
> (EX4200) that are remote.   Can I attach packet filters to the system
> services (HTTP,SSH)?  Do I attach the packet filter to the lo0
> interface?

You typically attach a firewall filter to the lo0 interface to secure
the routing engine.

For more information I highly recommend the following day one book,
which goes over this in detail:

http://www.juniper.net/us/en/community/junos/training-certification/day-one/fundamentals-series/securing-routing-engine/

I'm not an EX guru, but I believe the same concepts can be applied.

- Mark

-- 
Mark Kamichoff
[email protected]
http://www.prolixium.com/

Attachment: signature.asc
Description: Digital signature

_______________________________________________
juniper-nsp mailing list [email protected]
https://puck.nether.net/mailman/listinfo/juniper-nsp

Reply via email to