Juniper Networks Secure Access. Initial Configuration User Records Synchronization



Similar documents
How to integrate RSA ACE Server SecurID Authentication with Juniper Networks Secure Access SSL VPN (SA) with Single Node or Cluster (A/A or A/P)

Redundant Servers. APPolo Redundant Servers User Guide. User Guide. Revision: 1.2 Last Updated: May 2014 Service Contact:

High Availability and Clustering

Step-by-Step Guide to Open-E DSS V7 Active-Active Load Balanced iscsi HA Cluster

Configuring an IP (SIP) Polycom Soundstation on the Avaya IP Office

GCM for Android Setup Guide

External Authentication with Juniper SSL VPN appliance Authenticating Users Using SecurAccess Server by SecurEnvoy

HA Configuration Approach

Deploying ACLs to Manage Network Security

Step-by-Step Guide to Open-E DSS V7 Active-Active iscsi Failover

High Availability & Disaster Recovery Development Project. Concepts, Design and Implementation

TIBCO Spotfire Platform IT Brief

ipad or iphone with Junos Pulse and Juniper SSL VPN appliance Authenticating Users Using SecurAccess Server by SecurEnvoy

High-Availability User s Guide v2.00

This section describes how to set up, find and delete community strings.

White Paper ClearSCADA Architecture

Integrating with IBM Tivoli TSOM

ArcGIS for Server Reference Implementations. An ArcGIS Server s architecture tour

Borderware Firewall Server Version 7.1. VPN Authentication Configuration Guide. Copyright 2005 CRYPTOCard Corporation All Rights Reserved

DEPLOYMENT GUIDE DEPLOYING THE BIG-IP LTM SYSTEM WITH ADOBE ACROBAT CONNECT PROFESSIONAL

Step-by-Step Guide. to configure Open-E DSS V7 Active-Active iscsi Failover on Intel Server Systems R2224GZ4GC4. Software Version: DSS ver. 7.

Multiple Public IPs (virtual service IPs) are supported either to cover multiple network segments or to increase network performance.

LOAD BALANCING 2X APPLICATIONSERVER XG SECURE CLIENT GATEWAYS THROUGH MICROSOFT NETWORK LOAD BALANCING

Device Log Export ENGLISH

IMPLEMENTING SINGLE SIGN- ON USING SAML 2.0 ON JUNIPER NETWORKS MAG SERIES JUNOS PULSE GATEWAYS

netld External Authentication Setup Guide

High Availability Storage

IM and Presence Service Network Setup

How to setup FTP and Secure FTP for XD Series

Load Balancing BEA WebLogic Servers with F5 Networks BIG-IP

Cisco UCS CPA Workflows

Functional Specifications. Streem System Backup/Recovery

Appendix A Core Concepts in SQL Server High Availability and Replication

3. PGCluster. There are two formal PGCluster Web sites.

Scaling DBMail with MySQL

Remote Desktop Services Overview. Prerequisites. Additional References

Cisco EXAM Implementing Cisco IP Telephony and Video, Part 2 (CIPTV2) Buy Full Product.

Ignify ecommerce. Item Requirements Notes

Load Balancing and Clustering in EPiServer

Load Balancing and Clustering in EPiServer

Configuring High Availability for Embedded NGX Gateways in SmartCenter

Deploying Load balancing for Novell Border Manager Proxy using Session Failover feature of NBM and L4 Switch

Pre-Change Tasks and System Health Checks

Private to Public Overflow between IP Media Gateways

CLEO NED Active Directory Integration. Version 1.2.0

ViSION Status Update. Dan Savu Stefan Stancu. D. Savu - CERN openlab

DEPLOYING EMC DOCUMENTUM BUSINESS ACTIVITY MONITOR SERVER ON IBM WEBSPHERE APPLICATION SERVER CLUSTER

Chapter 10: Scalability

Q&A- How to register VIP-255PT to IPX-300 via VPN tunnel?

iscsi Quick-Connect Guide for Red Hat Linux

Network Load Balancing

How to Join QNAP NAS to Microsoft Active Directory (AD)

Load Balancing and Clustering in EPiDesk

Multi-factor Authentication using Radius

Allo PRI Gateway and Elastix Server

SQL Server Mirroring. Introduction. Setting up the databases for Mirroring

Installation Guide. Step-by-Step Guide for clustering Hyper-V virtual machines with Sanbolic s Kayo FS. Table of Contents

IP Interface for the Somfy Digital Network (SDN) & RS485 URTSII

Virtualization of CBORD Odyssey PCS and Micros 3700 servers. The CBORD Group, Inc. January 13, 2007

Configuring Network Load Balancing with Cerberus FTP Server

CHAPTER 2 BACKGROUND AND OBJECTIVE OF PRESENT WORK

medicad Installation Hectec GmbH Tel.: +49 (0) 871/ support@hectec.de

Implementing Highly Available OpenView. Ken Herold Senior Integration Consultant Melillo Consulting

High Availability with Postgres Plus Advanced Server. An EnterpriseDB White Paper

AlienVault Unified Security Management (USM) x. Configuring High Availability (HA)

Ingres High Availability Option

The Global Rules set is evaluated first and contains the global access rules that apply to all NG firewalls using the shared service.

How To Install Linux Titan

SQL Server AlwaysOn (HADRON)

Scenario 1: One-pair VPN Trunk

Configuration Guide. How to set up the IPSec site-to-site Tunnel between the D-Link DSR Router and the Cisco Firewall. Overview

FioranoMQ 9. High Availability Guide

Automated Fail-Over Implementation of Control-M at First National Bank. Derick Pieterse - Blue Turtle Rhys Pride - First National Bank

Panorama High Availability

Genius in Salesforce.com Pre- Installation Setup

Informatica MDM High Availability Solution

By the Citrix Publications Department. Citrix Systems, Inc.

Introduction to MPIO, MCS, Trunking, and LACP

Linux High Availability

S7 OPC Server Tutorial

Volume Replication INSTALATION GUIDE. Open-E Data Storage Server (DSS )

Clustering ExtremeZ-IP 4.1

Defender Configuring for Use with GrIDsure Tokens

Vendor Audit Questionnaire

Configuring Wireless Security on ProSafe wireless routers (WEP/WPA/Access list)

ArcGIS for Server Deployment Scenarios An ArcGIS Server s architecture tour

HP OpenView Storage Data Protector

Transcription:

Juniper Networks Secure Access Initial Configuration User Records Synchronization 1

This document explain how to setup User records Synchronization between different clusters or stand alone units. Active/ Passive, Active/ Active, Stand alone nodes. First cluster Active 172.22.149.112 passive 172.22.149.111 Second cluster Active 172.22.149.143 Passive 172.22.149.140 Configuration Steps: Step 1: Configure the first Node 172.22.149.112. Enable User Record Synchroniztion Under the Auth Server, choose Logical Auth Server Name. (This name should be the same across all nodes). Under the Authentication/Authorization Servers you should see the User Record Synchronization enabled with the Logical Auth Server Name. 2

Step 2: 1- System Configuration >> User Record Synchronization Enable User Record Synchronization 2- Node name. ( Exapmle Node112) 3- Shared Secret (please note All nodes share the same secret). 4- Node Function Choose Client and Server 3

Step 3: 5- This Client add the IP address of the node to enable the creation of the Database. 4

Step 4: 6- This Server add the IP Address of the entire peer Servers allowing Changes to user records on this server to be copied to the peer servers configured here. 7- Client Nodes enable the IP address of all the client nodes which are allowed to access this server. This act as an access list (ACL) to allow the other unit access to this server data base. 5

Second node (The passive node) 172.22.149.111. Step 1: Enable User Record Synchroniztion Under the Auth Server, choose Logical Auth Server Name. (This name should be the same across all nodes). Step 2: 1- System Configuration >> User Record Synchronization Enable User Record Synchronization 2- Node name. ( Exapmle Node111) 3- Shared Secret (please note All nodes share the same secret). 4- Node Function Choose Client and Server 6

Step 3: 5- This Client add the IP address of the node to enable the creation of the Database. 7

Step 4: 6- This Server add the IP Address of the entire peer Servers allowing Changes to user records on this server to be copied to the peer servers configured here. 7- Client Nodes enable the IP address of all the client nodes which are allowed to access this server. This act as an access list (ACL) to allow the other unit access to this server data base. 8

Second cluster Active 172.22.149.140 Passive 172.22.149.143 Configure the 3 rd Node 172.22.149.140. Step 1: Enable User Record Synchroniztion Under the Auth Server, choose Logical Auth Server Name. (This name should be the same across all nodes). Step 2: 1- System Configuration >> User Record Synchronization Enable User Record Synchronization 2- Node name. ( Exapmle Node140) 3- Shared Secret (please note All nodes share the same secret). 4- Node Function Choose Client and Server. 9

Step 3: 5- This Client add the IP address of the node to enable the creation of the Database. 10

Step 4: 6- This Server add the IP Address of the entire peer Servers allowing Changes to user records on this server to be copied to the peer servers configured here. 7- Client Nodes enable the IP address of all the client nodes which are allowed to access this server. This act as an access list (ACL) to allow the other unit access to this server data base. 11

Configure the 4th Node 172.22.149.143. Step 1: Enable User Record Synchroniztion Under the Auth Server, choose Logical Auth Server Name. (This name should be the same across all nodes). Step 2: 1- System Configuration >> User Record Synchronization Enable User Record Synchronization 2- Node name. ( Exapmle Node143) 3- Shared Secret (please note All nodes share the same secret). 4- Node Function Choose Client and Server 12

Step 3: 5- This Client add the IP address of the node to enable the creation of the Database. 13

Step 4: 6- This Server add the IP Address of the entire peer Servers allowing Changes to user records on this server to be copied to the peer servers configured here. 7- Client Nodes enable the IP address of all the client nodes which are allowed to access this server. This act as an access list (ACL) to allow the other unit access to this server data base 14