Questions tagged [juniper]

Juniper Networks is a networking technology company headquartered in Sunnyvale, California. They design and manufacture core and edge routers, as well as switches and security devices, most of which run their custom operating system JunOS.

272 questions
1
vote
0 answers

Juniper SSG5 redundant interfaces

I've been trying to set up redundant interfaces on the Juniper SSG5 (this model has no redundant interface mode) and I'm wondering if someone can help me determine whether it's actually possible. I've got the Juniper connected to two core switches,…
Demelziraptor
  • 479
  • 1
  • 4
  • 11
1
vote
1 answer

Cannot connect to firewall services through VPN on firewall device

I have a Juniper SSG5 firewall I'm using for VPN at a remote site, and I'm using Shrew Soft VPN client to connect from my office to this site. If I connect to the web GUI or SSH of the Juniper from the LAN at the remote site, there are no problems. …
Demelziraptor
  • 479
  • 1
  • 4
  • 11
1
vote
1 answer

Retrieve number of bytes send over logical interface from CLI (Juniper router)

Is there any simple method to check from CLI how many bytes has been sent over physical/logical router interface? I am interested in Juniper devices. It would be great if command result was a short output containing only (or almost only) information…
omnomnom
  • 113
  • 4
1
vote
2 answers

Juniper firewall - large pings for testing

Is there an way to permit ping packets larger than 1472 through a Juniper SSG520M firewall? "Ping of Death" and "Large Size ICMP Packet" protection has already been disabled under the 'Screening' options. I need to be able to ping from the Trust…
Peter
  • 5,453
  • 1
  • 26
  • 32
1
vote
3 answers

What is the minimum enable level to permit config download (Cisco & other vendors)

We are creating a service account to backup config from devices of various makes such as Cisco, Juniper etc., What is the minimum enable level we need to grant to the service account? If the answer is too subjective, I atleast want to know what is…
Benny
  • 181
  • 1
  • 7
1
vote
1 answer

How can I expire non-active sessions on my Netscreen SSG140?

I have a Juniper Netscreen SSG-140. While experimenting with a VoIP service, I defined a custom policy that was to be used to permit the possible ports in use to be sent back to the VoIP server from systems connecting across the internet. Because…
David Mackintosh
  • 14,293
  • 7
  • 49
  • 78
1
vote
1 answer

IOS traffic-export equivalent for Junos

In IOS the traffic-export command allows you to take incoming packets and send them, unaltered, to a specific interface. Is there an equivalent way to do this in Junos? I've got a J-series 2350 here. Initially I was going to look at the port mapping…
John
  • 11
  • 2
1
vote
3 answers

Why should I use Firewall Zones and not just Address Objects?

I appreciate Firewall Address Objects and Address Groups - they simplify management by letting me give a name to a group of addresses. But I don't understand what Firewall Zones (LAN, WAN, DMZ, etc.) do for me over Address Groups. I know all…
SRobertJames
  • 261
  • 1
  • 6
  • 10
1
vote
2 answers

How to get two subnets to talk to each other (foundry and juniper)

I have two switches, one which hosts a 10.130.32.x subnet (which is a foundry switch) and the other which is a juniper SSG and it is hosting a 10.130.30.x subnet. The users on the .32 subnet cannot communicate with the computers on the .30 subnet. …
geekbri
  • 81
  • 9
1
vote
1 answer

ECMP Load Balancing in JUNOS

I'm trying to figure out how to use ECMP load balancing in JUNOS. I know this isn't the best way to load balance, but its quick and dirty and gets done what I need to. In ScreenOS this was pretty easy. Device: SRX220 JunOS: 10.3R2.11 Here's what…
SpacemanSpiff
  • 8,753
  • 1
  • 24
  • 35
1
vote
1 answer

Juniper SSG-5 subinterface vlan routing to the internet

I'm unable to get a brand new Juniper SSG-5 with latest 6.3.0r05 firmware routing to the internet from a subinterface I created on bgroup0 setup as vlan2 (bgroup0.1 on "wifi" zone). When connected on the default vlan it gets on the internet just…
Halfdone
  • 163
  • 2
  • 9
1
vote
1 answer

Do I need the license update package for Juniper SRX100

Possible Duplicate: Can you help me with my software licensing question? I need a router/firewall to connect a couple of colocated servers to the internet. I was looking at the Juniper SRX100 but a friend told me I would need to buy the 3 year…
Element
  • 856
  • 2
  • 10
  • 14
1
vote
1 answer

What is the default management state on Netscreen firewall interfaces?

in other words, is the command: unset interface ethernet1/1 ip manageable redundant? I was thinking that for security purposes, it would probably make sense for Netscreens to only enable management on the mgt port, but I can't find any reference to…
Adam Brand
  • 6,127
  • 2
  • 30
  • 40
1
vote
3 answers

Juniper networks firewall

I had Juniper networks which made block to websites so I want to prevent it from blocking any website what can I do?
user40331
  • 127
  • 6
1
vote
0 answers

OpenVPN & Juniper SSG-140

I asked this question over on some Juniper Forums but they seem to be pretty dead as in over a week it hasn't had that many hits and no one has had any advice. I figure if I can find someone familiar with Juniper routers they can direct me into the…
sxanness
  • 137
  • 1
  • 17