Quantcast
Channel: SRX Services Gateway topics
Viewing all articles
Browse latest Browse all 3959

SRX210 as a Cisco Router

$
0
0

Hi,

I need to configure an SRX210 as a cisco router. In cisco its easy but in Junos i cant.

I means use the srx like a Cisco 1801 series or TP-Link router, neutral router, OpenWRT...

In Cisco router i have this configuration:

 

!
ip dhcp pool LAN
network 10.120.100.0 255.255.255.0
dns-server 8.8.8.8 8.8.4.4 87.216.1.65 87.216.1.66
default-router 10.120.100.1
!
interface FastEthernet0
description Interface WAN
ip address dhcpip nat outside
ip virtual-reassembly
speed 100
full-duplex
!
interface FastEthernet1
switchport access vlan 10
speed 100
!
interface Vlan10
description LAN
ip address 10.120.100.1 255.255.255.0
no ip redirects
no ip unreachables
no ip proxy-arp
ip flow ingressip nat inside
ip virtual-reassembly
ip tcp adjust-mss 1452
!ip nat inside source list 10 interface FastEthernet0 overload
access-list 10 permit 10.120.100.0 0.0.0.255

 

 

Works Fine.

 

My current config in SRX is this:

 

set system services dhcp pool 192.168.2.0/24 address-range low 192.168.2.128
set system services dhcp pool 192.168.2.0/24 address-range high 192.168.2.254
set system services dhcp pool 192.168.2.0/24 maximum-lease-time 86400
set system services dhcp pool 192.168.2.0/24 default-lease-time 86400
set system services dhcp pool 192.168.2.0/24 domain-name lan
set system services dhcp pool 192.168.2.0/24 name-server 8.8.8.8
set system services dhcp pool 192.168.2.0/24 name-server 8.8.4.4
set system services dhcp pool 192.168.2.0/24 router 192.168.2.1

set interfaces ge-0/0/0 description WAN TRUNK
set interfaces ge-0/0/0 gigether-options auto-negotiation
set interfaces ge-0/0/0 unit 0 family ethernet-switching port-mode trunk
set interfaces ge-0/0/0 unit 0 family ethernet-switching vlan members WAN
set interfaces ge-0/0/0 unit 0 family ethernet-switching native-vlan-id 1

set interfaces fe-0/0/1 unit 0 family ethernet-switching
set interfaces ge-0/0/1 unit 0 family ethernet-switching
set interfaces fe-0/0/2 unit 0 family ethernet-switching
set interfaces fe-0/0/3 unit 0 family ethernet-switching
set interfaces fe-0/0/4 unit 0 family ethernet-switching
set interfaces fe-0/0/5 unit 0 family ethernet-switching
set interfaces fe-0/0/6 unit 0 family ethernet-switching

set interfaces vlan unit 1 family inet address 192.168.100.2/24
set interfaces vlan unit 10 family inet address 192.168.2.1/24
set interfaces vlan unit 1074 family inet dhcp

set security forwarding-options family mpls mode packet-based
set vlans LAN description "LAN"
set vlans LAN vlan-id 10
set vlans LAN interface fe-0/0/2.0
set vlans LAN interface fe-0/0/3.0
set vlans LAN interface fe-0/0/4.0
set vlans LAN interface fe-0/0/5.0
set vlans LAN interface fe-0/0/6.0
set vlans LAN interface ge-0/0/1.0
set vlans LAN interface fe-0/0/1.0
set vlans LAN l3-interface vlan.10

set vlans WAN description "IP ISP"
set vlans WAN vlan-id 1074
set vlans WAN l3-interface vlan.1074

set vlans default description "ONT Management"
set vlans default vlan-id 1
set vlans default l3-interface vlan.1

i need use this option:

set security forwarding-options family mpls mode packet-based

i want use the ROUTER mode, no like a FIREWALL mode.

Ping from LAN vlan no response.

 

admin@SRX210> ping 8.8.8.8 source 192.168.2.1 
PING 8.8.8.8 (8.8.8.8): 56 data bytes
^C
--- 8.8.8.8 ping statistics ---
4 packets transmitted, 0 packets received, 100% packet loss

Ping from WAN vlan OK.

 

admin@SRX210> ping 8.8.8.8 source 192.168.137.214 
PING 8.8.8.8 (8.8.8.8): 56 data bytes
64 bytes from 8.8.8.8: icmp_seq=0 ttl=55 time=10.252 ms
64 bytes from 8.8.8.8: icmp_seq=1 ttl=55 time=5.227 ms
64 bytes from 8.8.8.8: icmp_seq=2 ttl=55 time=17.560 ms
^C
--- 8.8.8.8 ping statistics ---
3 packets transmitted, 3 packets received, 0% packet loss

My WAN IP from ISP is recived via DCHP

 

¿ Any help?

Thanks!!!


Viewing all articles
Browse latest Browse all 3959

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>