Access Security - J-Web - Limit access to only authorized interfaces

Information

If out-of-band management is not used, you can ensure that J-Web connections are only accepted over specific interfaces, such as your management network facing interface.

Solution

Configure J-Web over HTTPS to limit access to authorized interfaces, generally interfaces on the OOB.

user@host# edit system services web-management https
user@host# set interface <OOB_INTERFACE>

See Also

http://www.juniper.net/us/en/training/jnbooks/day-one/fundamentals-series/hardening-junos-devices-checklist/

Item Details

Category: SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|SC-7(13)

Plugin: Juniper

Control ID: b428dd2fdf82429ccc5578b357625248f52af59420c74e832e220d4d739b1116