Screen OS

last person joined: 8 months ago 

This is a legacy community with limited Juniper monitoring.
  • 1.  Block an ip on SSG 140

    Posted 09-26-2011 07:33

    I have a SSG 140 and i want to block an external ip from accessing the internal n/w. I want to block his ip from accessing anything on our n/w. Ur help is required 



  • 2.  RE: Block an ip on SSG 140
    Best Answer

    Posted 09-26-2011 07:47

    Hi,

     

    By default, your SSG should be configured to block Untrust to Trust traffic.  If you have this open, or you're using a custom zone, you will want to add an Address Book object for that IP (i.e. 204.1.1.1/32) and add a "deny" policy.