Configuring NetScreen Firewalls

Now that you are an expert on NetScreen firewalls, you will probably want to start deploying these devices within your organization. As you start configuring and placing each firewall, you may start to think that this is a lot of work for one person and that there must be a better way. Tracking logs, configurations changes, VPNs (virtual private networks), and whether a device is properly functioning can be an overwhelming task for an administrator. Fortunately, there are options available to simplify this task. NetScreen devices provide support for tools like Syslog and SNMP (Simple Network Management Protocol). In addition, Juniper has developed a product called NetScreen Security Manager that provides a centralized method to manage and administer your firewalls across the distributed enterprise. NetScreen Security Manager (NSM) provides the ability to manage up to 1,000 devices from a single location. This includes the hardware configuration, policies, VPNs, logging, troubleshooting, and more.
Before we start to discuss NSM, it's important to understand the other options available to us from a monitoring perspective. If NSM is not an option for your organization, each firewall provides capability to monitor through the use of tools like Syslog, SNMP, Webtrends, or e-mail.
Syslog is an industry standard and typically low-cost method used for capturing log files from devices, servers, or applications. Most often, Syslog is a service running on a UNIX host that has the capability to capture and store logging data that is sent to...