Today’s data center security administrator must not only secure traffic flows between physical elements on the network, but also secure increased traffic between virtual elements, such as between virtual machines within a single physical server. To address this “blind spot” as well as to address the increased access and sophistication of security threats in a cloud-ready data center, businesses must expand their security protection capabilities. Appropriate data center security policies affect service availability of business-critical applications as well as operations.
To complement the simplification and sharing of the cloud-ready data center, the data center security services also should be consolidated and virtualized. This approach enhances the flexibility and efficiency for the entire data center security solution.
Juniper Networks has developed a data center security solution that spans the physical and virtual network that is agile and adaptive to change, and is an integral part of the next-generation data center network fabric. Juniper delivers a rich set of security services that not only meets today’s security and performance requirements, but also addresses future on-demand growth. Data center security services such as application-aware denial of service, stateful firewall, and intrusion detection and prevention systems are consolidated on a security platform and can be enforced on the physical network, or even on the VM hypervisor itself, providing the flexibility required to dynamically assign resources to the services.
Leveraging a common operating system with an open network automation platform and a rich set of support services help to minimize risk and speed time to implementation when configuring security solutions for the cloud-ready data center.
Solution Components
Security
- SA Series SSL VPN Appliances: Provide scalable, simplified, and secure remote access to data center resources from multiple remote networks and platforms.
- SRX Series Services Gateways: Combine routing, switching, application services, and user- and application-aware security within a modular, expandable chassis to deliver unprecedented performance and flexibility while reducing management overhead.
- Unified Access Control Solutions: Offer powerful identity- and role-based access control that increases agility in service deployment and increase overall quality of experience. Unified access control can be deployed within the data center or across the extended enterprise to protect networks and applications.
- vGW Series: Secures the virtual data center and cloud computing environments in real-time through high-performance, hypervisor-based stateful firewall, virtual network visibility and monitoring, and reporting. Enforces a granular virtualized security policy consistent and integrated with physical server security, and automatically invokes policy enforcement as VMs change and move, all with zero VM host capacity drain.
Junos Platform
- Junos Pulse: A dynamic, standards-based multiservice network client that drastically simplifies user experiences by delivering integrated connectivity, access, application acceleration, and security.
-
Junos Space: Provides applications for network infrastructure automation including:
- Junos Space Network Activate — Allows for full lifecycle management of MPLS services, and quick and easy set-up of VPLS services.
- Junos Space Ethernet Design — Helps deploy an entire network just as easily as a single switch.
- Junos Space Route Insight — Enables rapid planning, troubleshooting, and change simulation for L3 services.
- Junos Space Security Design — Enables bulk configuration and provisioning of complex security policies.
- Junos Space Service Now — Automates diagnostics to speed problem resolution.
- Junos Space Service Insight — Delivers proactive, actionable network insight to manage risk and improve application reliability.
- Junos Space Virtual Control — provides access and visibility into the virtual network and automated orchestration between the physical and virtual networks for server virtualization deployments.
Network Operating System
- Junos OS: Integrates routing, switching, and security services to reduce complexity, achieve operational excellence, and deliver dynamic services with lower TCO.
Network Management
- Network and Security Manager (NSM): Provides a single pane of management for the entire network infrastructure, including routing, switching, and security devices.
- STRM Series Security Threat Response Managers: Collect events and alerts from different Juniper and third-party products and aggregate them in order to provide an enterprise-wide threat management view.
Technical Services
- Juniper Technical Services: A family of services that protect your investment in a high-performance network while increasing operational effectiveness and lowering operational cost. The services combine Juniper’s service automation technology to increase productivity, reduce risk and increase network uptime by automating diagnostics and reducing time-to-resolution (TTR). This industry leading innovation increases operational efficiency by allowing your staff to concentrate on running the business, not fixing the equipment. By adding to these features an expert level of interaction with senior Juniper technical support engineers, Juniper Technical Services provide for extremely effective troubleshooting and service restoration resulting in higher availability.
Securing the Physical, Virtual Cloud Continuum (Nemertes Research)
-
- Register
A top J-Partner will help you get the most from Juniper’s networking and security solutions, whether for a small enterprise or the largest, global IP backbone.
Partner Locator
