Juniper LDAP and RADIUS
Junos provides authentication based on local database and authentication based on external authentication server.
I. local authentication method, which requires admin to add a user and password to the firewall
Set access profile profile1 client user1 firewall-user password user1
Set access firewall-authentication pass-through default-profile profile1
Set security policies from-zone trust to-zone trust policy auth_policy1 match source-address any
Set security policies from-zone trust to-zone trust policy auth_policy1 match destination-address any
Set security policies from-zone trust to-zone trust policy auth_policy1 match application junos-ftp
Set security policies from-zone trust to-zone trust policy auth_policy1 then permit firewall-authentication pass-through client-match user1
II. External authentication server
2.1 ldap configure ldap server first and configure it on device as follows
Set access profile ldap_pf authentication-order ldap
Set access profile ldap_pf authentication-order password
Set access profile ldap_pf ldap-options base-distinguished-name CN=users,DC=screenos,DC=spg,DC=juniper,DC=net