SSL Forward Proxy
Hi I am testing SSL forward proxy over vSRX junos 15.1, I followed the below guide steps; https://www.juniper.net/documentation/en_US/junos/topics/task/configuration/ssl-proxy-workflow-configuring.html...
View ArticleIPSec VPN not stable- connection keeps dropping out
Hi, I setup a vpn tunnel between juniper SRX-240 and FlexGW-StrongWAN machine. The tunnel becomes up for cetain time then the connection drops while rekeying.I tried to debug the ike logs i found the...
View ArticleTCP-Proxy
Does SRX act as proxy for tcp connection by default or this is have to be configured ?
View ArticleSRX240 Max IPSec VPN's
Hi All, Can anyone help out with experiences on SRX240 IPSec VPN tunnels? Specifically the 'actual' maximum number supported? I posed a question to JTAC to clarify the number (1000 according to the...
View ArticleSRX SSLVPN config
Hello, Please advise me if this is off topic and if it should be in another section.I am looking to implement SSLVPN with a Pulse Connect Secure appliance. The termination will be a SRX3xx.Can someone...
View ArticleIKE negotiation failed with error: IKE gateway configuration lookup failed...
Hi All, I am trying to set up Route-based IPSec VPN between SRX345 and Cisco RVI 130 but not work with the following error: IKE negotiation failed with error: IKE gateway configuration lookup failed...
View ArticleSRX240 only one IPSec tunnel is slow in one direction.
Hello.I have SRX240H with multiple IPsec tunnels and SRX210H with multiple tunnels too.both boxes has JUNOS Software Release [12.1X46-D60.4] and only one IPsec tunnel at one direction 240->210 is...
View ArticleSRX 550 ethernet aggregate configuration
Hi teamI have four SRX 550 devices at two data center.below is the topology. SRX1 DC1 connected to SRX2 DC2 via 1G link.SRX3 DC1 connected to SRX4 DC2 via 1G link. i need to know is there any chance i...
View ArticleClient to LAN VPN error
I'm trying to setup a client to LAN based VPN to a web server behind SRX100. Tunnel is not coming up and I'm getting following error when collecting traceoptions for the tunnels - [May 24...
View ArticleIDP offline updates easier
Hi, This simple script to simplify the function of downloading the IDP signatures for SRX offline, you'll need to define your device model / os version / buildn number , and this script will let you...
View ArticleBoth SRX340 are masters in VRRP. Both routers has exact the same configurations.
Hi,I have 2 SRX340 connected via 2 switches (EX220).I configured trunbks between SRX340 to switches and between the switches.All the security policy are allowed all protocols on both SRX.However, both...
View ArticleLCC 0 offline
Hi Experts, On SRX1400 i am getting this alram "chassisd[70018]: CHASSISD_FRU_OFFLINE_NOTICE: Taking LCC 0 offline: Restarting unresponsive board" continously. What could be the reason for this...
View ArticleLogical system
1- If there is 2 virtual routers inside a single LSYS, and a session path through these 2 routing instances , do i expect 2 sessions ? 2- if i have 2 LSYSs , each LSYS has 2 routing instance and a...
View ArticleLogging not send to syslog file
Hi all, I am not able to get logging on the file which has been created: This is the conf for syslogxxx@xxx# run show configuration system syslog archive size 100k files 3; user * { any emergency; }...
View ArticleAnti-virus Kaspersky not working with temp license
Hi everyone,I need help in Anti-virus Kaspersky. We planning to buy a license for Anti-virus and before we wanted to test it.But after configuring and installing temp license , i don't see any...
View ArticleSCTP NAT
Has anyone implemented NAT on the SCTP layer and if so can you perhaps share your configuration.
View ArticleSRX5K SPU high utilization when proceeding unknown UDP packets
Dear all, We are testing SRX5600 performance with UDP packets which are used mostly in gaming application. The testing scenario is as the below: We have simply two subnets and two group of three...
View ArticleHIGH SESSION UTILIZATION IN SRX 1400
Hi, I have a SRX 1400 where I have 1 NPC+SPC. Version is 12.1R5.5 which is very old so I can't go on expanding SPC.In cp session i can see below which points that max session are 1048576. However in...
View Article