Security Compliance

Integrate Juniper Firewalls with SolarWinds SEM

Follow these procedures to configure Juniper firewalls to log to your Security Event Manager (formerly Log & Event Manager) appliance, and configure the Juniper/NetScreen 5 tool on your SEM appliance.

First published date

10/17/2018 10:28 PM

Last published date

3/16/2023 3:29 PM

Overview

This article outlines the procedures for configuring Juniper firewalls to log to your SEM appliance, and configuring the Juniper/NetScreen 5 tool on your SEM appliance.

Product section

Security Event Manager

Resolution

To configure your Juniper firewall to log to your SEM appliance:

  1. Open your NetScreen WebUI.
  2. In the left pane, click Configuration, and then select Report Settings > Syslog.
  3. On the Syslog page, select Enable syslog messages.
  4. Select the interface from which you want to send messages from the Source interface list.
  5. Add your SEM appliance to the Syslog servers section:
    1. On the first free row, select Enable.
    2. In the IP/Hostname column, enter the IP address for your SEM appliance.
    3. In the Security Facility column, select a local facility.

      The default local facility in the Juniper/NetScreen 5 connector for SEM is local1.

    4. Select Event Log and Traffic Log.
  6. Click Apply.
To configure the Juniper/NetScreen 5 connector on your SEM Manager:

SEM HTML5 console (versions 6.6 and newer)
  1. In the SEM Events Console, navigate to Nodes > Manager Connectors.
  2. In the search box, enter Juniper.
  3. Select the Juniper/Netscreen5 connector, and then click Add Connector.
  4. Enter a new name, or maintain the default.
  5. Make additional changes, if needed, and then click Add.
  6. Under Configured connectors, select the connector, and then click Start.

SEM Flash console
  1. Open your SEM Console and log into your SEM console as an administrator.
  2. On the SEM toolbar, navigate to Manage > Appliances.
  3. Next to your SEM Manager, click the gear icon, and then select Connectors.
  4. In the Connector Configuration window, enter Juniper/NetScreen 5 in the search box at the top of the Refine Results pane.
  5. Click the gear icon next to the Juniper/NetScreen 5 connector, and then select New.
  6. Enter a custom Alias or accept the default.
  7. If you are finished configuring the connector, click Save.
  8. Click the gear icon next to the new connector, denoted by an icon in the Status column, and then click Start.
  9. Click Close to close the Connector Configuration window.
If you are not able to see any Juniper device logs in LEM web console. Please refer to Troubleshooting Network Devices Logging to SEM

Disclaimer: Please note, any content posted herein is provided as a suggestion or recommendation to you for your internal use. This is not part of the SolarWinds software or documentation that you purchased from SolarWinds, and the information set forth herein may come from third parties. Your organization should internally review and assess to what extent, if any, such custom scripts or recommendations will be incorporated into your environment. You elect to use third party content at your own risk, and you will be solely responsible for the incorporation of the same, if any.