Re: VPN issue Licenses buyed
Hi, there is no technical way of converting remote access licenses to dynamic vpn licenses. You can try to get your reseller and Juniper to credit the remote access licenses and then buy the correct...
View ArticleRe: VPN issue Licenses buyed
yes jonashauge. i opened TTK with juniper support for a change licenses type. Hope i can change themso thanks
View ArticleRe: Is it safe to manually delete files from /var/transfer/config on a SRX3400?
You are very welcome Hermod, Im glad we were able to help you.
View ArticleRe: OpenVpn issue with rerouting interfaces
Hi Dimig, I am not sure about the topology at this point. Could you please provide a rough topology diagram and the SRX config ? The following config looks confusing / incorrect:from zone...
View ArticleRe: OpenVpn issue with rerouting interfaces
Dimi, I believe we are confused because in the flow traces the x.x.x.x address was representing the public address of the OpenVPN client (remote user): May 27 17:55:14...
View ArticleRe: OpenVpn issue with rerouting interfaces
Please also filter your flow trace log file in order to confirm if the following message is reported: re-route-failed > show log [file_name] | match "re-route failed" And please share a "show...
View ArticleRe: Automated configuration backup - SRX345
Hi, Can you share the configuration you used? Also please confirm if you are seeing any error messages related to the file transfer in the messages log file (if its configured): > show log messages...
View ArticleRe: OpenVpn issue with rerouting interfaces
Hi guys, Yes you are right and I am sorry for the confussion.I represented 2 different addresses with the same letter.So,Topology is, as correctly mentioned...
View ArticleRe: OpenVpn issue with rerouting interfaces
also the show route detail show route 1.1.1.1 detail inet.0: 144 destinations, 150 routes (143 active, 0 holddown, 1 hidden) 0.0.0.0/0 (1 entry, 1 announced) *Static Preference: 5 Next hop type:...
View ArticleRe: Zone_Communication
If you generate traffic from 192.168.4.254 to 192.168.1.254 then on the SSG confirm the sesson with nat is created get session src-ip 192.168.4.254 dst-ip 192.168.4.254 If the session exists with the...
View ArticleDefault interface to start Skyatp session from
Hello I have a problem regarding connecting to Skyatp cloud.the Problem is i can only ping the internet from specific interface.If i dont specify the source interface i cant ping or have a DNS...
View ArticleRe: Default interface to start Skyatp session from
set services advanced-anti-malware connection (authentication | source-address | source-interface |...
View ArticleRe: Automated configuration backup - SRX345
I will try this test and I will let you know about the result. For your info, whenever I do a commit then I can see all files saved to /var/transfer/config but not saved to the root folder of my TFTP...
View ArticleRe: Automated configuration backup - SRX345
Yes you can use the IP address instead of the hostname. Also if you decide to use the hostname you need to configure a DNS server on the SRX so the firewall can resolve hostnames to IPs. Example: # set...
View ArticleRe: OpenVpn issue with rerouting interfaces
Dimi,Based on the configuration, reth2.110 and reth2.150 are not configured under any custom routing-instances so they will be configured by default under the Master/Default routing-instance...
View ArticleRe: Brand new SRX300 high CPU usage
Hello all, I am facing same issue about high CPU utilization on Juniper SRX340. Below is some output from my SRX.seyma@SRX340> show version Hostname: SRX340 Model: srx340 Junos: 15.1X49-D70.3 JUNOS...
View ArticleRe: Default interface to start Skyatp session from
Hi amrmhishjuniper, When connecting to the Internet the SRX will use by default the IP address of the interface facing the Internet (usually the interface in the untrust zone). To what interface is...
View ArticleRe: Default interface to start Skyatp session from
Hey the output from admin@node0> show route 8.8.8.8inet.0: 204 destinations, 205 routes (204 active, 0 holddown, 0 hidden)+ = Active Route, - = Last Active, * = Both0.0.0.0/0 *[Static/5]...
View ArticleRe: OpenVpn issue with rerouting interfaces
Hi lpaniagua Thanks for your detailed answer.The purpose of those multiple routes is load-balance for 0.0.0.0/0. # show routing-options interface-routes { rib-group inet fbf-group-ISP-traffic; }...
View ArticleRe: OpenVpn issue with rerouting interfaces
If I create a firewall filter to use as next-hop, only the 2.2.2.193 ip and add it as input in reth2.110 will save the situation?
View Article