Configuring NetScreen Firewalls

Copyright Juniper Networks
Reprinted with the consent of Juniper Networks
Authored by Finina Aranez
As we were writing this book, Juniper released ScreenOS 5.1.0 to the public. This release is a major milestone for Juniper. It provides many new features and enhancements. It also is one of many upcoming and planned releases which will take Juniper's NetScreen security products to new heights in support for emerging technologies and features.
Appendix A was developed in coordination and with the support of the ISG Technical Publications team at Juniper. Special thanks to Finina Aranez who authored the NetScreen Migration content. The information presented below is provided and taken from the NetScreen Migration 5.1.0 publication, available at www.juniper.net.
This chapter provides brief descriptions of all the new features introduced in this Beta release of ScreenOS 5.1.0. For detailed information on each feature, refer to the NetScreen Concepts & Examples ScreenOS Reference Guide and the NetScreen CLI Reference Guide.
This chapter is organized into the following sections:
Attack Protection
Authentication
DHCP
DNS
Interfaces
L2TP
Network Management
NSRP
Policies
PortModes
PPPoE
Routing
Services
SNMP
Traffic Shaping
URL Filtering
VPNs
A NetScreen device can now perform Deep Inspection (DI) on packets using several popular peer-to-peer (P2P) and instant messenger protocols, Microsoft-Remote Procedure Call (MSRPC), and Server Message Block running on NetBIOS (SMB/NetBIOS). In addition, there are some new user-configurable contexts for previously supported protocols. You can also individually disable predefined attack...