SRX Services Gateway
Reply
Contributor
Duso
Posts: 15
Registered: ‎05-29-2009
0

SRX210 UTM - AV doesn't work on port 8080(HTTP)

Hello,

 

AV(Kaspersky) doesn't work on port 8080(HTTP). On 80(HTTP) works OK. For testing I used EICAR.

How can I enable scanning for HTTP on port 8080 ?

Any ideas ?

Thanks in advance

 

Duso

 

 

Juniper Employee
ScreenOS
Posts: 19
Registered: ‎12-28-2007
0

Re: SRX210 UTM - AV doesn't work on port 8080(HTTP)

You must configure a firewall policy with TCP port 8080 and with AV profile attached to it for the AV engine to scan on non standard port.

 

Contributor
Duso
Posts: 15
Registered: ‎05-29-2009
0

Re: SRX210 UTM - AV doesn't work on port 8080(HTTP)

 

Hello,

 

in the firewall policy I have configured custom TCP 8080 port (set applications application http-8080 protocol tcp destination-port 8080) & AV-profile attached for FW rule.

 

 

 

from-zone untrust to-zone untrust {
    policy proxy-DNAT {
        match {
            source-address any;
            destination-address any;
            application http-8080;
        }
        then {
            permit {
                application-services {
                    utm-policy custom-utm-policy;
                }
            }
        }
    }
}


utm-policy custom-utm-policy {
    anti-virus {
        http-profile av_test;
    }
}

 

 

Is it possible to somehow define in 'UTM Policies > AV-profiles > HTTP profile' a different port ?

 

 

Duso

 

 

 

 

 

Juniper Employee
msheikoh
Posts: 12
Registered: ‎12-09-2009

Re: SRX210 UTM - AV doesn't work on port 8080(HTTP)

have a look at this doc.

set port 80 and 8080 (http-ext )

www.pmi.it/file/whitepaper/000351.pdf

Contributor
Duso
Posts: 15
Registered: ‎05-29-2009
0

Re: SRX210 UTM - AV doesn't work on port 8080(HTTP)

 

Hello,

 

port 8080 (HTTP-EXT) is predefined only for ScreenOS

for JUNOS HTTP-EXT = 7001


# show groups junos-defaults applications application junos-http-ext
term t1 protocol tcp destination-port 7001;

 

 

Regards,

Duso

 

Juniper Employee
ScreenOS
Posts: 19
Registered: ‎12-28-2007
0

Re: SRX210 UTM - AV doesn't work on port 8080(HTTP)

No you cannot

Copyright© 1999-2013 Juniper Networks, Inc. All rights reserved.