Re: configuring the VDSL2 PIM with point to point IP without using username...
Dear spuluka kindly find the anwers on your questions Is the at-1/0/0.0 interface showing link up in show interfaces terse? at-1/0/0 up up at-1/0/0.0 up up inet 10.0.0.2/30 root> show...
View ArticleRe: SRX210 accepts any password entered for any user via ssh or jweb/http
elkadiki wrote:Hi Jesse G, Why don't you consider upgrading the JunOS ? Unforunately we don't have a service contract for the device as its 10+ years old, and I'm under the impression you can only get...
View ArticleRe: dynamic VPN
Yes. Agreed. Temporarilly forgot about that. Hopefully he will be staying with versions below 15x so he can keep this functionality.
View ArticleRe: SRX210 accepts any password entered for any user via ssh or jweb/http
You will need a support contract to get JTAC support. I can imagine for this company, cost may be a factor why they have not upgraded the hardware already. However, if you cosider the potential cost of...
View ArticleGlobal Policy Not taking effect
Hey Guys, I am doing some initial tests before deploying out some new SRX firewalls. Model: srx1400JUNOS Software Release [12.1X44-D35.5] While setting up some external monitoring (ping to our...
View ArticleRe: IDP Signature Update On SRX650
Hello, Please ignore my reply. Have succeeded to transfer and unzipping files after doing root login. Thanks
View ArticleRe: configuring the VDSL2 PIM with point to point IP without using username...
Your SRX configuration then is good and all the correct elements are in place. If you want to further verify the actual packet flow you can use the instructions for creating trace options in this kb...
View ArticleRe: Global Policy Not taking effect
Hello, Is it possible for you to delete the ping from the host inbound traffic system services of the untrust security zone and then check if it works as per your understanding. As per the below...
View ArticleRe: Global Policy Not taking effect
Hi PulkitB, I have tried that a couple times, but it looks like the host-inbound-services entry enables the ping service in general. Without having that set I cannot ping on that zone. Regards,GMH.
View ArticleRe: IPsec tunnel up but no traffic
I followed the directions in the link provided. Here is are the parts of the configuration that I've changed: interfaces { gr-0/0/0 { unit 0 { tunnel { source 172.16.41.1; destination 172.16.41.51; }...
View ArticleRe: IPsec tunnel up but no traffic
The loopback is just an alternative to using an interface as a gateway, either will be fine. You are missing the routes for addresses that will go into the GRE tunnel with a next hop of the GRE...
View ArticleRe: IDP Signature Update On SRX650
Glad you have it working now. Thanks for the update.
View ArticleRe: Internet Traffic Flow Inward Issue
Sorry for delayed response as this msg didn't pop in my email. Q. When you say you have two routing tables, does this mean you created a separate virtual router routing instance for each of the ISP Or...
View ArticleRe: SRX 240 Dynamic VPN
Hello, Does anyone know from which version after the D35 is it fixed ?I'm using 12.1X46-D40.2 and I'm currently have the same problem with it... Thanks
View ArticleRe: SRX 240 Dynamic VPN
Hi, Please refer the below TSB for the issue;http://kb.juniper.net/InfoCenter/index?page=content&id=TSB16860&smlogin=true&actp=search According to this ;Junos maintenance releases with...
View Articlesrx340 as a switch and gateway router
hello all, i've just got my hands on a brand new shiny SRX340. all it's good for at the moment is a foot rest though, because i can't seem to be able to put basic configuration on it.i have a load of...
View ArticleQuery abaut 2 ISP actives with SNAT and DNAT rules and failover
Hi guys, I need to guide me...I have this scenary: Topology Assumptions TASA zone ge-0/0/0: 200.55.93.210/29, 200.55.93.211/29, 200.55.93.212/29, 200.55.93.211/29IPLAN zone ge-0/0/1:...
View ArticleRe: IPsec tunnel up but no traffic
Hi, Yes, I was missing routes and that was part of the issue. However, I still could not ping from networks behind each gateway or from/to the gateways themselves. Like before, traffic was leaving...
View ArticleRe: Internet Traffic Flow Inward Issue
Well, the outbound connection will use the preferred routing instance, probably the one you placed the interface into. The simplest way to insure that the server reply goes back out the same ISP that...
View ArticleRe: Internet Traffic Flow Inward Issue
Ok I will do by the way I got a very another easy explanation to cater (for anyone who later read the discussion ) http://rtoodtoo.net/how-to-avoid-flow-asymmetry-on-srx/
View Article