Description

This guide references Resolution Guides and articles for verifying and troubleshooting IDP.

Solution

  1. Verify the attack database has been downloaded and installed. To do this, refer to the following:
    Verify/Troubleshoot SRX / IDP Attack Database
    SRXKB23422 - Resolution Guide - SRX - Verify/Troubleshoot IDP attack database [juniper.net]

    SRX
    Chassis Cluster

    KB23423 - Resolution Guide - SRX - Verify/Troubleshoot IDP attack database on SRX in a Chassis Cluster [juniper.net]
  2. Select the item that best describes the IDP functionality issue
    Troubleshoot SRX / IDP Issues
    IDP PolicyKB16489 - SRX Getting Started - Quick Setup Guide for Configuring IDP on a SRX [juniper.net] (includes Configure Recommended Policy as the IDP Policy)
    TN74 - IPS Security Policy Creation for Juniper Networks SRX Series Services Gateways - App Note on IDP Policy creation with CLI and NSM
    KB22096 - Troubleshooting IDP policy update failure on SRX Series [juniper.net] known issues
    Technical Documentation Reference: IDP Policies
    LoggingKB16224 - How to forward traffic logs from an SRX device to JSA/STRM [juniper.net]
    Technical Documentation Reference: IDP Logging
    Attack DetectionKB23397 - How to revert to an earlier IDP Signature Attack Database using CLI [juniper.net]
    Technical Documentation Reference: IDP Attacks and Attack Objects
    Quick LinksProblem Report Search - For known and fixed issues, select SRX Series, select a Release,  enter idp in Search options, and click Search. 
    Technical Documentation for SRX IDP
    KB16109 - SRX Getting Started - Troubleshoot Intrusion Detection and Prevention (IDP) [juniper.net]

 

Modification History

2022-04-28: updated link to PR Search
2021-07-24: updated links.