Skip to Content
ScreenOS Cookbook
book

ScreenOS Cookbook

by Stefan Brunner, Vik Davar, David Delcourt, Ken Draper, Joe Kelly, Sunil Wadhwa
February 2008
Intermediate to advanced
838 pages
23h 24m
English
O'Reilly Media, Inc.
Content preview from ScreenOS Cookbook

Chapter 21. Virtual Systems

21.0. Introduction

The high-end security devices in the ScreenOS family provide the ability to create Virtual Systems (VSYS). A VSYS is a logical firewall created within the physical security device. All ScreenOS firewalls have a root system. With the appropriate license, root system administrators can create these virtual firewalls which permit unique configuration of policies and policy objects, user lists, virtual private networks (VPNs), routing, and more. VSYS administrators can view and edit only the information configured within their own virtual firewall.

The primary application for VSYS is a multitenant, managed firewall application. In this application, multiple customers can share physical hardware and still have the personal firewall experience. This type of application may also be present in large enterprises where multiple firewalls can be collapsed into a VSYS on less hardware or even a single firewall cluster.

With recent ScreenOS releases, another use for VSYS has emerged: the ability to use resource profiles as Denial of Service (DoS) protection mechanisms within the system.

This chapter provides overview information on VSYS as well as recipes for common configurations. After understanding how to create VSYS, share zones, Virtual Routers (VRs), and interfaces, and how to use VSYS admin accounts, you can consult recipes from other chapters in this book to meet your custom configuration requirements.

VSYS and VSYS Administrators

Creating VSYS ...

Become an O’Reilly member and get unlimited access to this title plus top books and audiobooks from O’Reilly and nearly 200 top publishers, thousands of courses curated by job role, 150+ live events each month,
and much more.

Read now

Unlock full access

More than 5,000 organizations count on O’Reilly

AirBnbBlueOriginElectronic ArtsHomeDepotNasdaqRakutenTata Consultancy Services

QuotationMarkO’Reilly covers everything we've got, with content to help us build a world-class technology community, upgrade the capabilities and competencies of our teams, and improve overall team performance as well as their engagement.
Julian F.
Head of Cybersecurity
QuotationMarkI wanted to learn C and C++, but it didn't click for me until I picked up an O'Reilly book. When I went on the O’Reilly platform, I was astonished to find all the books there, plus live events and sandboxes so you could play around with the technology.
Addison B.
Field Engineer
QuotationMarkI’ve been on the O’Reilly platform for more than eight years. I use a couple of learning platforms, but I'm on O'Reilly more than anybody else. When you're there, you start learning. I'm never disappointed.
Amir M.
Data Platform Tech Lead
QuotationMarkI'm always learning. So when I got on to O'Reilly, I was like a kid in a candy store. There are playlists. There are answers. There's on-demand training. It's worth its weight in gold, in terms of what it allows me to do.
Mark W.
Embedded Software Engineer

You might also like

Special Edition Using® Crystal Reports® 10

Special Edition Using® Crystal Reports® 10

Neil FitzGerald, Ryan Marples, Naisan Geula, Bob Coates, James Edkins, Michael Voloshko, Joe Estes, Kathryn Hunt, Steve Lucas, Roger Sanborn
Juniper Networks® Field Guide and Reference

Juniper Networks® Field Guide and Reference

Aviva Garrett, Gary Drenan, Cris Morris, Juniper Networks®
Mastering VMware vSphere 6.7 - Second Edition

Mastering VMware vSphere 6.7 - Second Edition

Martin Gavanda, Andrea Mauro, Paolo Valsecchi, Karel Novak

Publisher Resources

ISBN: 9780596510039Errata Page