Network Security

This category contains 34 posts


Juniper knowledge base search plugin for Firefox

Juniper has a plugin for Firefox that can be used for easy search of their knowledge base articles.

Go to http://kb.juniper.net and click on ‘Install Search Engine PlugIn’

 

 

Loose RPF vs Strict uRPF

The concept when implementing Loose or strict uRPF (Reverse Path Forwarding) is simple, before forwarding the packet to the destination the router will check to see if the routing table has a route back to the source, if not then the packet is dropped.

In strict uRPF if the interface of the source address is not the same interface as indicated in the route table then the packet is dropped. This is the recommended setting to prevent DOS attacks however the risk is that asymmetrically routed packets will get dropped.

Cisco IOS Security vulnerability bug checker tool

Is there was a better way to see a list of all known vulnerabilities or bugs for a particular IOS version instead of looking at the version release notes?

The answer is yes, Cisco recently released a free new Security vulnerability checker tool for their IOS versions.

In an easy to use drop down menu we can now select a particular IOS version to get a list of all known vulnerabilities that effect that version.

Ref.

www.cisco.com

Configuring HA in Juniper SRX

If you have been a long time Netscreen user and are thinking about upgrading to Juniper SRX, beware of the HA configuration complexity with JunOS, it is very unique and is a real challenge to master. You will definitely wish Juniper would have left it the way it was in Netscreen.

for details Ref. Juniper Knowledge base article