Snmp v3 srx cluster, engine-id
From what i understand the juniper documentation is a bit contradicting regarding this: https://kb.juniper.net/InfoCenter/index?page=content&id=KB27191&actp=RSS here it says: "You must ensure...
View ArticleDIP configuration in Junos
I have the following DIP configuration in SSG and would like to configure this in Junos SRX 240. Can I get some tips on how to configure the following in Junos? set interface ethernet0/0 ext ip...
View ArticleSRX 3600 chassis cluster cant configure IPv6 Static route with J-Web
Hi all, I'm configuring IPv6 Static route for Juniper SRX that installed chassis cluster. I can configure with CLI but cant with J-WEB (http or https). Pls see attachment. Option for IPv6 is hidden. I...
View Articleconfiguring fxp0 interface for remote access
Hi all,i configured chassis in srx1500 firewalls.The management IP(fxp0) of node 0 is 172.16.10.1 and the management IP(fxp0) of node 1 is 172.16.10.2.. my problem is as under. 1) First i want to ping...
View Articleenabling web interface for irb.10 interface
Hi all,i want to enable web interface for a irb.10.This interface has a ip address of 172.16.11.1.i can access it through ssh but when trying to access it through web.then can not access web gui.any...
View ArticleSRX 300 -> Licenses
Hi all, I need some help to understand Juniper`s new licensing-model.Since the SRX300 there are two softwarepackages / licenses to choose.JSB and JSE.For my purpose, I only need JSB.Is it correct, when...
View Articleintegrated user firewall: domain user on non-domain computer
Hi.I configure integrated user firewall and it all work perfect exept one thing.When "client" use domain computer - he goes to internet correctly, but when client use hes own laptop - he got a...
View ArticleSRX Route VPN - Random tunnel tear downs
Running SRX550 12.3x48-D30 and have a few VPN tunnels using IKEv2 . Tunnels, zones, interfaces are all broken out into custom routing tables for complete separation. OSPF is also running over the st0.x...
View ArticleCan't get cluster of SRX100 working
Two SRX100. Ports 5 and 7 are connected using crossover. Port 6 (on both) are connected to our management network. node0: ## Last commit: 2017-02-14 01:26:13 UTC by indeni version 12.1X46-D35.1; groups...
View ArticleGRE over IPSEC to a cisco
Hi, Can anyone confirm if the following solution works or what is the required configuration to get this working. On the cisco side they are using GRE encrypted inside ipsec, but the way it works is...
View ArticleSRX100H EoL and security updates
Hello, Does Juniper still provide security updates for the SRX100H? According to dates and milestones "support" continues to May 2019. Thank you, Chris
View ArticleSame subnet on two interfaces
I need to support kind of a strange setup that I'm not sure how to configure correctly: My network setup is like this: [ SRX345 ] 10.0.0.3/28 --[-- 10.0.0.2 @ ge-0/0/15.0 -,----- irb.1 @ 10.0.1.254/24...
View ArticleSRX upgrade from 11.4 to 12.3 possible?
Quick Question, can we upgrade SRX running JUNOS 11.4R7.5 directly to junos-12.3X48-D40.5 Need urgent reply please. Thanks
View ArticleSRX branch - is it possible to disable auto-power-on?
Hi,I'm about to create a SRX cluster with 2 SRX240 over a switched network.A potential scenario I've heard about is when there is a power-cut, one site goes down, fine.But when the power returns the...
View ArticleHelp with a vpn configuration
i have this configuration:  I need to do this configuration on my srx firewall, the newvpn name in this configuration is Site2Site_uni this is my configuration: ATTACHED and i have this error to...
View Articlethe issue with pbr on SRX
Hi,everybody. why i can't apply pbr binding a st.0 interface on Juniper SRX ? but ssg can(such as tunnel interface). the SRX st0 interface do not support it . My Lab have a SSG550M set up many...
View ArticleRemote Desktop Out to Internet Host
I have a SRX240 with the factory load from the reset switch. I have established basic internet connectivity. I have several internet hosts that I remotely manage with Miccrosoft's RDP from within the...
View ArticleJSRPD_SET_HW_MON_FAILURE : hw-mon failed for redundancy-group 1
Dear Expert, Anybody already experienced that issue. I ave two SRX1400 in cluster and All of the sudden, I got below logs.Anybody having an idea in what is going on ? JSRPD============XXX xx xx:xx:xx...
View ArticleRDP sessions randomly drop with SESSION protection
Hi, We are using SRX3400 at the datacenter with SCREEN enabled. We have enabled almost all SCREEN options and we are experiencing drops on tcp sessions randomly. When it comes to RDP it becomes much...
View ArticleDestination NAT/Port NAT - Totally confused and in dire need of help
I've been getting my butt kicked by this - about 20 hours so far - and completely baffled.I have an Amazon VPC with two subnets - Public and Private. Within the private subnets have two VM's.I have an...
View Article