Help us improve your experience.

Let us know what you think.

Do you have time for a two-minute survey?

 
 

JIMS Identity Management Profile Overview

Juniper® Identity Management Service (JIMS) is a standalone Windows service that gathers and manages extensive data on users, devices, and groups from Active Directory domains. JIMS collects advanced user identities from various authentication sources for SRX Series Firewalls, allowing the device to quickly identify thousands of users in large enterprises.

Juniper Security Director Cloud is used to push the JIMS configuration to SRX Series Firewalls. You can create an identity management profile in Juniper Security Director Cloud and deploy it to SRX Series Firewalls. The SRX Series Firewalls then query the JIMS server for the information that is based on the deployed profile.

Figure 1: Juniper Security Director Cloud , SRX, and JIMS Connectivity Juniper Security Director Cloud , SRX, and JIMS Connectivity

SRX Series Firewalls connect with JIMS through either HTTP or HTTPS. HTTP is recommended for debugging, while HTTPS should be used for deployments. The SRX Series Firewalls have both primary and secondary JIMS configurations. The firewalls always query the primary JIMS first. The secondary JIMS serves as a fallback option with limited resources and should only be used if the HTTP GET request or the number of queries to the primary JIMS fails. The SRX Series Firewalls continually monitor the status of the primary JIMS and will switch back once it is operational again.

Note:

You can create an identity management profile, deploy the profile, and edit, clone, and delete these profiles. Use the Identity Management Profile page to obtain advanced user identity from different authentication sources for SRX Series Firewalls. To access the page, click SRX > Identity > JIMS.

Field Descriptions

Table 1: Fields on the Identity Management Profile Page

Field

Description

Name

The name of the identity management profile.

Description

The details of the identity management profile.

Primary JIMS Server

The IP address of the primary JIMS server.

Devices

The name of the SRX Series Firewall.