JUNIPER-JS-SCREENING-MIB

MIB Reference — IPNetwork Monitor · Updated September 09, 2026

All MIBsJUNIPER-JS-SCREENING-MIB

Organization: Juniper Networks, Inc.

Last Updated: 2014-04-02

Category: Domain: Security, VPN and Security, Vendor: Juniper

Description: Defines managed objects for screen (DoS/DDoS attack screening) statistics on Juniper Networks SRX and J-series security devices.

Start monitoring vendor-neutral, standards-based MIB, any SNMPv3-capable network device (SNMP engine identity/boot/clock status) with a free 30-day trial of IPNetwork Monitor. Import MIBs, browse SNMP OIDs, create custom SNMP monitors, configure alerts, and monitor any SNMP-enabled network device from a single console.

What Is JUNIPER-JS-SCREENING-MIB?

JUNIPER-JS-SCREENING-MIB is a Juniper Networks enterprise MIB covering the "screen" security feature of Juniper Enterprise Firewall functionality on SRX and J-series security devices. It defines objects related to detection of denial-of-service (DoS) and distributed denial-of-service (DDoS) activity, including generic network-level attacks, operating-system-specific attacks, and packet-fragmentation-based attacks. Rather than classic environmental sensors, it is used to monitor the software-level security status of the firewall — the state and activity of its threat-screening defenses — giving operators visibility into ongoing or blocked attack attempts against the device. It builds on Juniper's broader enterprise MIB and firewall/zone configuration model, per the module's own recommendation to consult Juniper documentation for full context. It is typically deployed on Juniper SRX/J-series firewalls positioned at network or datacenter perimeters where active DoS/DDoS defense is required, monitored via the JUNIPER-JS-SCREENING-MIB MIB's screen counters.

IPNetwork Monitor allows you to monitor SNMP objects defined in JUNIPER-JS-SCREENING-MIB. Use the built-in SNMP Monitoring Browser to explore available variables, view their current values and descriptions, and select the objects you want to monitor. You can then create SNMP monitors, configure thresholds, and receive alerts when monitored values change.

Supported Devices

  • Juniper SRX and J-series security appliances/firewalls

Monitoring Examples

No sample object names were provided for this MIB, so specific table/object identifiers cannot be confirmed; per the module description, the MIB is expected to expose counters and configuration state for firewall DoS attack screening, network-level DoS screening, OS-specific attack screening, and fragmentation-attack screening. In practice an operator would poll such attack-detection counters to see spikes that correlate with an active DoS/DDoS attempt against the firewall, but the exact object names cannot be verified from the given data.

What Can Be Monitored

  • DoS/DDoS attack detection activity
  • OS-specific attack detection
  • packet fragmentation attack detection
  • screen (firewall defense) configuration state
Imported Objects

From IF-MIB

ifNameOBJECT-TYPE

From JUNIPER-JS-SMI

jnxJsScreeningOBJECT-IDENTITY

From SNMPv2-SMI

Counter64
Integer32
MODULE-IDENTITY
NOTIFICATION-TYPE
OBJECT-TYPE

From SNMPv2-TC

DisplayString

How to Use in IPNetwork Monitor

Example using jnxJsScreenMonIpOptTimestamp OID:

Select a Juniper SRX/J-series security appliance (DoS/DDoS screen defenses) as the target host to create a monitor — the SNMP service should be up and running on it. Click New Monitor, then check SNMP Custom on the Favorites tab, click Next, and confirm the host. On the next page, click Select... to open the built-in SNMP MIB Browser and type jnxJsScreenMonIpOptTimestamp into the Find box to locate it in the OID tree, then select it and click OK. The IP standard RFC 791 specifies a set of options to provide special routing controls, diagnostic tools, and security. On the monitor's Main parameters page you can set the target's SNMP port (default 161), credentials, polling interval, and other settings — see the SNMP Monitor help for details. On the State conditions and Alerting tabs, configure when the monitor should change state and trigger an alert; since this is a Counter64-type OID, Value bounds is the most useful condition here — trigger an alert if the counter increases between polls, since a rising count of errors, failures, or discards often points to a real underlying problem. Click Finish to create the monitor; you can adjust any parameter later.
OIDs

RFC description

Provides security screening and firewall statistics for Juniper Enterprise Firewall DOS protection.

Start monitoring Juniper SRX/J-series security appliance (DoS/DDoS screen defenses) with a free 30-day trial of IPNetwork Monitor. Import MIBs, browse SNMP OIDs, create custom SNMP monitors, configure alerts, and monitor any SNMP-enabled network device from a single console.

Download JUNIPER-JS-SCREENING-MIB