BGP type internal / external
When setting up BGP I note that peering succeeed despite not using type external or internal. Can somone please shed some light on the specific purpose of these options under bgp group stanza. thank you
View ArticleRe: BGP type internal / external
Hello Ajaz, Can you upload the BGP config that you used in the Juniper device?Are we talking about an EBGP or IBGP adjacency?
View ArticleUnable to HTTPS to the webgui thru a VPN st0
SRX-100 at our remote site.When I try to HTTPS://192.168.203.1, I get the following error:Access Error: 401 -- UnauthorizedInterface is not authorized for HTTP access I am at the corporate office. We...
View ArticleRe: Unable to HTTPS to the webgui thru a VPN st0
Hi, This is because you've restricted access to HTTP / HTTPS traffic to vlan.1 and fe-0/0/0.0 set system services web-management http interface vlan.1 set system services web-management https...
View ArticleSIP Issues with SRX 240
We have set up an Aserisk server to test SIP , SIP ALG has been turned off on the SRX. The phones are on voice network 10.3.0. where as the Asterisk is on 10.1.0 network. In this scenario the phones...
View ArticleRe: BGP type internal / external
appreciate the reply though i'm unsure what the confusion is about, i mean why you have requested config. i'm assuming that under protocols bgp > group stanza, that 'type-external' refers to eBGP...
View ArticleRe: BGP type internal / external
Ajaz, There are 2 ways for configuring or letting the SRX know if the BGP adjacency is external or internal. Actually as you said, you could bring both EBGP and IBGP adjacencies without using the type...
View ArticleRe: BGP type internal / external
hi ajaz,type is optional when the peer-as is specifiedjunos could find if its an internal or external peer using the peer-as number.
View ArticleRe: SIP Issues with SRX 240
HI, can you attach your config to the topic, so we can have a look an try to fix your problem
View ArticleSRX show which traffic is hitting the deny policy
Hello, I very often use the 'show security flow session' to see traffic being permitted and creating a session. However, What do you use to show traffic which is hitting the deny policy ?? Many...
View ArticleRe: SRX show which traffic is hitting the deny policy
Hi,show security flow session will show you also by which policy traffic permited or debiedHowever, you can use also the "show security match-policies ... "
View ArticleRe: SRX show which traffic is hitting the deny policy
Hi,See also this kb might be helpful if you want to log the default denied traffichttps://kb.juniper.net/InfoCenter/index?page=content&id=KB28109&smlogin=true&actp=search
View ArticleSRX- 650 || Policy Based VPN || Communication Issue
Hi I've built a Policy based IPSec VPN and having issue communicating from SRX box to far end LAN- 192.168.5.0/24 The VPN Tunnel is UP and LAN to LAN comminication is working without any problem....
View ArticleRe: SNMP scan from untrust
lanman wrote: I'm thinking about configuring a firewall filter on the loopback interface just in case.You should always have a firewall filter protecting your loopback interface regardless.
View ArticleRe: SNMP scan from untrust
Hi, Even i observed similar issue and created filter similar to below . This can be applied to loopback interface or to the interface facing Internet. root@Site-A> show configuration policy-options...
View ArticleRe: Unable to HTTPS to the webgui thru a VPN st0
Abed AL-R. I was able to delete just the http line and get in that way, but would rather go thru https: When I try to delete, I get this; [edit system services web-management] 'https' Missing mandatory...
View ArticleRe: InterVlan Problem
Hi, The switch is a industrial mode and it is of another manufacturer (PLANET). I have config with VLAN 10 his interface, and a trunck link in the port 1. I have attached any pictures where you can...
View ArticleSRX 3400 |12.1X46-D30.2| Static NAT
Hi all, I'm pulling my hair out here. I have this one rule where its sourcing from the static NAT IP. cbo@SRX-1> show configuration security nat static rule-set rule_L4 rule L4TA25 match {...
View Article