No idea on how to route my LAN traffic to Internet using SRX220 cluster
Hello, I started by deleting everything:delete vlans, interfaces vlan, security zones security-zone trust interfaces, etc. (figured I start from scratch). I successfully setup my cluster: Cluster ID: 1...
View ArticleTraffic fails over VPN SRX
Hi,I have a VPN between an NS 25 and an SSG 20. I've built a parallel vpn using SRX's, to replace the older NS25 and SSG20. Everything seems fine, but certain traffic is failing over the SRX VPN....
View ArticleSRX - VPN Issues - Address Translation
Hello, Forgive me for the following possibly confusing information. Background Info 2 x SRX 340 setup in Chasis Cluster with rethClient server behind on internal IP address ranges with static NAT...
View ArticleSRX220 Juniper crazy DHCP
Hi there, I am facing a problem with my Juniper SRX220 on the DHCP function. I have about 100 clients connected to the network with DHCP enabled.My DHCP pool is from 10.196.24.51 to 10.196.24.210....
View ArticleDynamic VPN using LDAP (freeipa)
Am currently authenticating locally on the SRX for Dynamic VPN clients. Am trying to transition to use freeipa to authenticate the dynamic VPN users. Below is my config but i cant seem to get the...
View ArticleSyslog format
I've configured syslog for configuration changes to be logged on a remote server. Below is my config: set system syslog host 10.10.10.10 any criticalset system syslog host 10.10.10.10 authorization...
View ArticleSophos Anti Virus Engine running but not doing anything.
Hey guys, I have the Sophos Anti Virus Engine activated and running on my SRX 210. I followed the default configurations to turn the engine on and detect viruses shown by the the Juniper article...
View Articlepersistent-NAT
Does anyone has another way or another material to study persistent-NAT ???im really upset with the juniper explanation of persistent NAT
View ArticleSRX Cluster acting as a Switch for VRRP connected Devices doesn't work
I have a connection to an Service Providor that uses VRRP to enable High Availablity connections, so they require to be connected to a switch. I have connected each one of their routers into a pair of...
View ArticleWebserver not working
Hello, I am trying to set up a webserver.I need the following: 187.72.138.193> 10.196.24.31 on port 80 What am I doing wrong?When I try to access it from outside it keeps loading forever then an...
View ArticleSRX - DHCP Not Working
Hi All,we have a srx 1400 working as DHCP-Relay. The DHCP-RELAY is working fine, however, we need that this same SRX 1400 works as a DHCP-SERVER for a specific routing-instance, but this is not...
View ArticleStorm Control Config
Hi allI am unable to find and config storm control feature in SRX 240/ 210. If any one can help me in this regard like the feature available in EX series switchesset ethernet-switching options...
View ArticleSRX210H access machine on fe-0/0/3 from outside IP
I have a JSRX210H configured with two IP addresses, as in the picture below: On my server, I installed the ESXi 6.5, assigned it a static IP address of 192.168.1.2/24 and plugged into the fe-0/0/3...
View ArticleSRX3400 Redundency "show chassis cluster information"
Hi Team, In a node the output showing like below, does it means any error in the node ? Please guide. admin@XXXXXX-FW02-cl1> show chassis cluster information...
View ArticleSRX3400 Redundency "show ntp status"
Hi, Please tell me what would be recommended valus for those KPIs (rootdelay=?) in the output. I mean what would be the threshold values for KPIs to raise an ALARM. admin@XXXXXXX-FW01-cl1> show ntp...
View ArticleVRRP Issues
Hi, I have VRRP setup on my two SRX550's We had one internet line up until recently so all of our VLANs were using FW01 as the master node. Machines in vlan.68 were able to contact vlan.40 with no...
View ArticleSuite B configuration
I'm trying to set up a tunnel using the predefined proposals for suite B. I can see the traffic and it attemps to establish the tunnel, but it never does. If I remove the proposal set and use a pre...
View ArticleCan someone explain this PR1251752?
Hi all, Appreciate someone explain regarding the PR1251752 whether its related to my issue there is when i query my DNS Server using https://dnschecker.org/ it also appear a private ip DNS server....
View ArticleHow to apply / install license on NCP Client?
Hi all, any one know how to apply license on NCP client for SRX? As i know the NCP client is 30 days free trial. I'm cannot see the menu on client to install the license. Thanks and appreciate someone...
View Articlecategory list not getting hit on EWF
Hi Experts, we are having problem on the enhanced webfiltering. everything is configured right(i hope so) but all the websites that should be blocked based on the category list from the EWF profile...
View Article