SRX 240 IPSEC S-to-S VPN - Traffic not passing
Hi,Have SRX 240 in a cluster and configured ipsec vpn... the Tunnel is up and the policies seems to be ok... but the traffic is not passing through the tunnel (st0.0)... I have used lo0 as the external...
View ArticleApplication firewall for O365 and Skype for business traffic
Hello,Does any one using Application control feature on Juniper SRX to allow O365 and skype for business traffic.Does this worked perfectly well without using SSL decryption or it is necessary to use...
View ArticleSRX300 SFP Ports and EX3300
Hi there, I was trying to connect the SFP port on an SRX300 to the SFP port on an EX3300 as I would like to use this as the uplink between the 2 devices. However, I noticed even after connecting a...
View ArticleHow to block Facebook.com and allow Facebook.com/xyz on SRX340
Hello everyone, I need Facebook blocked in the webfiltering so I have set this category to blocked. However, I need to allow access to our Corporate site: facebook.com/xyz. Is this possible? If, so...
View ArticleSRX345 and SRX-MP-1VDSL2-R : can't switch to ADSL mode, can't change mac...
Hi, I'm trying to connect to an ADSL/VDSL line using a SRX345 and SRX-MP-1VDSL2-R and i am facing two issues: 1/ the documentation say that the mode (adsl/vdsl) can be switched just by creating the...
View ArticleSRX320 VDSL/ADSL Module Configuration
I am somewhat familiar with Juniper ScreenOS, but not with JunOS or SRX devices, so please go easy on me! We have recently acquired some SRX320 firewalls running 17.4. I am comfortable entering...
View ArticleJuniper SRX300 + CoS over routing instances and IPSec
Hi,I've got a branch Juniper SRX300 and i want to apply Class-of-service on it. We have to one additional virtual-router on it, so we have base inet instance and VR instance. There's is OSPF...
View ArticleDynamic VPN - multiple user classes
I have a dynamic VPN profile which seems to work. Users can log in using their AD domain accounts, get their protected resources and everything runs ok.Bu the question remains whether I can somehow...
View ArticleHelping a partner agency troubleshoot a down vpn between our SRX240 and their...
One of our partner agencies did an IOS upgrade on their Cisco C3850, after which the site-2-site vpn between us won't come back up. From troubleshooting at our end, it looks like a phase 2 issue and...
View ArticleSRX as a router with basic IPS functionality
Hi, 1) Can we use basic/few IPS functionality in packet mode. If yes please suggest URL for more info2) For maximum 1 Gig throughput please suggest SRX model. We will be terminating 2 BGP link on the...
View ArticleSRX240H2 - ARP Issues - Separate VLANs on Multi-NIC Server
Hello,I have a server with two NICs and two ip addresses on separate VLANs and separate subnets that don't overlap. Each NIC has a separate interface on the Juniper SRX240H2. eth0 is setup on...
View ArticleWhy is SRX not respecting static ip allocations?
I have noticed that when i set static ips on the virtual machines i have juniper DHCP still assigns those ips to new virtual machines that are created Why is srx not respecting the static ip assignments?
View ArticleU-Boot upgrade failed
Hi All.I bought a new one Juniper SRX100B and decided to update the firmware to the last recomended version.=> setenv serverip 172.16.1.1=> setenv ipaddr 172.16.1.2=> setenv netmask...
View ArticleSRX 100/650 Non-Standard behavior for PIM SPARSE MODE
Hi everyone, We are trying to deploy PIM SPARSE mode and have observed two non-standard behavior on SX 100 /650 when it comes to PIM SPARSE MODE.Our set up is as follows: Above R2/R3 are Cisco...
View ArticleNAT on multiple network interfaces on server removes internet!
So i just figured out what i have been running into for several days now I have a virtual server that i have 4 virtual network interfaces on.Each of the virtual interfaces have ip from dhcp server on...
View Article(ask) Commited configuration but didn't shown on Operational Mode.
I would like to ask. I were configure the on configuration mode on such like following. set security nat destination pool weboptinnew_10-2-114-46 routing-instance default set security nat destination...
View ArticleWrong 'mode' after factory reset
Just a quick one... I have just reset a SRX320 to factory defaults, but I can no longer access it using the 'How to Set Up Your SRX320' guide that came in the box, which I was upon first use. After a...
View ArticleSRX3600 Major alarm
Hi all..My SRX3600 was working fine until i restarted it during a planned shutdown. Now the FPC modules of firewall are shown in present status rather than online and the interfaces won't come up. The...
View ArticleConfigure Route filter on SRX 220 h2
Hi, I have got 1 two SRX 220 h2 nodes acting as 1 one chassis cluster node connect to two uplink 1 BGP and the second is point-to-point .I have multiple customer connected through sub-interfaces...
View ArticleSRX 550 no free space
Hello all i have this issue that j-web refuse to open because there is no disk space and i have issued 'request system storage cleanup' but no effect .. after some troubleshooting i have found that...
View Article