Description

This article explains how to enroll SRX to SkyATP using the firewall CLI.

Solution

Starting from Junos OS 19.3R1, We can enroll the SRX to an existing SkyATP realm or create a new realm and then enroll it using the firewall CLI. 

** We can use the command "request services advanced-anti-malware enroll" and complete it with the following required fields:-

 

1> Enroll the SRX Series Firewall to Juniper ATP Cloud:

user@host> request services advanced-anti-malware enroll

Please select geographical region from the list:

1. North America

2. European Region

3. Canada

4. Asia Pacific

Your choice: 1

 

2> Select an existing realm or create a new realm:

Enroll SRX to:

1. A new SkyATP security realm (you will be required to create it first)

2. An existing SkyATP security realm
 

*** If you select option 1 to create a new realm, the steps are as follows:

. You are going to create a new Sky ATP realm, please provide the required information:

. Please enter a realm name (This should be a name that is meaningful to your organization. A realm name can only contain alphanumeric characters and the dash symbol. Once a realm is created, it cannot be changed):

  • Real name: example-company-a
  • Please enter your company name:
  • Company name: Example Company A
  • Please enter your e-mail address. This will be your username for your Sky ATP account:
  • Email: [email protected]
  • Please setup a password for your new Sky ATP account (It must be at least 8 characters long and include both uppercase and lowercase letters, at least one number, at least one special character):
  • Password: **********
  • Verify: **********
  • Please review the information you have provided:
  • Region: North America
  • New Realm: example-company-a
  • Company name: Example Company A
  • Email: [email protected]
  • Create a new realm with the above information? [yes,no]
  • yes

Device enrolled successfully!
 

*** If you select option 2 to use an existing realm, the steps are as follows:

Enter the name of the existing realm:

  • Please enter a realm name.
  • Realm name: example-company-b
  • Please enter your company name:
  • Company name: Example Company B
  • Enter your email address/username for the realm. This is the email address that was previously created when setting up the realm.
  • Please enter your e-mail address. This will be your username for your Sky ATP account:
  • Enter the password for the realm. This is the password that was previously created when setting up the realm.
  • Password:********
  • Enroll device to the realm above? [yes,no] yes

Device enrolled successfully!

 

** You can use the "show services advanced-anti-malware status" CLI command on your SRX Series Firewall to verify that a connection has been made to the cloud server from the SRX Series Firewall.

Modification History

2024-02-27: Article Created
2024-05-16: Added related info

Related Information