Zone-Based Address Books

Zone-based address books are a way to define and organize network addresses and address groups in a security policy context based on the zones where they reside. Zones are logical entities that are defined by administrators to separate different parts of a network, and they allow for granular security policies to be created to control traffic flow between them.

With zone-based address books, an administrator can define an address or address group once and then reference it in security policies for multiple zones.

When a rule change is created, network objects are filtered by the address book associated with the source and destination zones.

Supported Device Vendors
  • Juniper SRX