Network Security - Set the source address for all route engine generated traffic - syslog

Information

Many services (NTP, SNMP, RADIUS, etc.) can be configured with a source-address option which allows you to statically configure the source address to use for communication. In those circumstances the source address becomes the one that is specified with the source-address argument (provided the address is a valid address specified on the interface of a router), otherwise default-address-selection influences the default source address selection.

Solution

Configure source address for syslog traffic.

user@host# edit system syslog
user@host# set source-address <IP_ADDRESS>

See Also

http://www.juniper.net/us/en/training/jnbooks/day-one/fundamentals-series/hardening-junos-devices-checklist/

Item Details

Category: AUDIT AND ACCOUNTABILITY

References: 800-53|AU-10(1)

Plugin: Juniper

Control ID: 1d2524917c1809c23c625851d0c777c3aac42d2ce845f0a0d073315d6eda5059