Pubclic IP issues
I have openvpn in my lan and want to route that machine with public, i have tried static / destination nat. I am able to connect my internal lan via openvpn with public ip but i can't do ssh to any...
View ArticleLocal to public ip mapping in srx300
I have openvpn in my lan and want to route that machine with public, i have tried static / destination nat. I am able to connect my internal lan via openvpn with public ip but i can't do ssh to any...
View ArticleUnified policy not working
I got latest 18.4 vSRX 3.0.Been playing with new unified policy.So with config below the unified rules (Fake_News) is never hit.Is there a higher priority with classic rules regardless of the order?...
View ArticleDual Load balance and Source base route
Dear All,I am beginner in Juniper FW.Now i am using SRX340 and fail over clustering.i have two ISP links.So i want to use one network (1.1.10.0/24) always user ISP 1 and the rest are using ISP 2....
View Articlesrx4600 an Cisco Nexus 7000 ping lost
Hello everybody,I have a problem.The SRX4600 is connected with 10 gigabit to the Nexus 7000.The interface is also up.If I put a ping on the gateway from the firewall now I get massive packet losses.If...
View ArticleCan I use google authenticator for SRX300 Remote VPN client authentication?
Can I use google authenticator for SRX300 Remote VPN client authentication?I want to setup the SRX300 IPSec remote VPN client login with google authenticator, how can I do this? Thank you so...
View ArticleSRX clustering and source base route for internet
Dear All,I would like to request to help for SRX cluster and source base route for internet using.Last time i am using dual loadbalancing (round robin) and clustering.Now i would like to change source...
View ArticleERR_TOO_MANY_REDIRECTS
Hello,I am configuring a vSRX and I have an experience on SRX240I cannot connect to Jweb while SSH works fine (vSRX 18.3R1.9)I always have the ERR_TOO_MANY_REDIRECTS error on different browsers...
View ArticleVPN Failover needed upon Packet Loss in ISP Link
Hello,We have dual ISP links at branch offices with failover config. Whever Primary link goes down, Secondary link takes over, but when packet loss occurs in the primary link, Route still follows...
View ArticleSky-ATP SMTP Profile
Hi I have SkyATP Premium license and managing the SX5400 through Space SD 16.1.I am trying to configure the SMTP profile but didn't find SMTP profile configuration in Sky portal, and there is no option...
View ArticleSky-ATP HTTPS and SMTPs Traffic
Hi are the HTTPs and SMTPs traffic inspected through SkyATP by default, or there is a special configuration required? Thanks
View ArticleOut-of-band management fxp0 doesn't work on a vSRX
Hello, I am working with a vSRX (version 18.3R1.9) and I can not configure the interface fxp0.The interface is on the first network adapter. The " show interface fxp0 " command gives the same mac...
View Articleno SRX name after the user name
Hello,Normally I'm used to when I sign on ssh on the machine my username and the @ with the name of the SRX is.On the new srx4600 is now only my username without @ Is this normal or is there still an...
View ArticleHow to send RST after an inactive-timeout happens?
We have some applications which can be idle for a long time. They're hitting the inactive-timeout. The problem is, once that happens, the application gets confused because it never gets a response, but...
View ArticleUnable to commit configuration on J-Web
Hi experts! I have created a custom login class 'WEB1" to restrict the commands and the configuration changes to be made by a particular user. The commands work exactly as expected when the user logs...
View ArticleCopying config on Active and backup partition
Morning guys! I am trying to understand if there is a simple command to copy the running config from one partition to the other and boot the SRX from that partition ? Lets say the Active partition has...
View ArticleCustom login class configuration issue : commands not working on J-Web..while...
Hi experts! I have created a custom login class 'WEB1" to restrict the commands and the configuration changes to be made by a particular user. The commands work exactly as expected when the user logs...
View ArticleLogs Show Denied Traffic Sourced from the Web Destined to Public IPs not owned
Saw some interesting denied traffic in the logs on multiple SRX firewalls and didn't have an explanation.We see denied traffic sourced from random public ip's on the web destined to IP addresses that...
View ArticleSRX 240 ISSU upgradeFailure
I have done upgrades on our SRX 240 using ISSU multiple time but lately we are having issue upgrading from 12.3X48-D70.3 to 12.3X48-D75" WARNING: Not enabled dual root partition on secondary node ISSU...
View Article