SSG 5 Firewall to Firewall VPN
I have 2 building connected Router to Router thru 10MB Internet. Both are SSG 5 device running same OS. The VPN is working, but I am seeing issue with performance. The WAN has Domain Authentication to...
View ArticleRe: SSG 5 Firewall to Firewall VPN
Hi Edd,Please answer the below mentioned queries for better understading of the issue:+ Are you able to observe the spikes or drops when you initiate the Ping from egress interface to FW1 to egress...
View ArticleRe: SSG140 Different Interface Routing and VLANs
You are welcome Paul.. glad I could help!
View Articlewho can help me to analyse the session information below
Total 3 sessions according filtering criteria. id 221406/s**,vsys 0,flag 08000040/0000/0001/0000,policy 88,time 180, dip 0 module 0 if 5(nspflag...
View ArticleRe: L2TP over IPsec to Microsoft RRAS
Many thanks for your response. I've got it working but I'd like to verify my config and potentially help someone else. I have my untrust (public) interface on e0/0. My ISP gave me a block of IPs on...
View ArticleRe: who can help me to analyse the session information below
The session view does not have any byte counters to tell if there is actually traffic in either direction. But if you use the web interface and go to the polices view. Turn on logging for the policy....
View ArticleECMP
hi:kindly could you please help meI have a juniper ssg550,I have configured 4 lines on it with ecmp and i configure 75 policy based vpn.I want to add 5th line and i know that the max for ecmp is 4 so...
View ArticleRe: ECMP
AFAIK, there is no workaroundhttps://kb.juniper.net/InfoCenter/index?page=content&id=KB7805&actp=search
View ArticleRe: ECMP
Perhaps you can re-structure your 5 paths into two virtual routers with 2 in one and 3 in the other. then have your downstream setup in a third VR that has ECMP up to the other two. This will not...
View ArticleRe: SSG 5 Firewall to Firewall VPN
Risha, Thank You for this info and sorry it has been this long to respond. I am bit green on terminology. I am attaching a small PDF to show a "mock" layout of the VPN. Perhaps the PING of...
View ArticleRe: SSG 5 Firewall to Firewall VPN
+ Are you able to observe the spikes or drops when you initiate the Ping from egress interface to FW1 to egress interface of FW2 which is connected to 10Mbps line?---- I am getting good, solid PING...
View ArticleRe: Forward public ip to device directly attached to ssg interface
Itisthe simplestand best solution !thanks renato
View ArticleRe: SSG 5 Firewall to Firewall VPN
I would recommend you to make the changes to the existing setup during the MW because any change will disrupt the VPN.Based on your answers I would suggest you to raise a JTAC case as this will require...
View ArticleWeb Filtering Can't Work
I have been update license web filtering on juniper ssg 5, and then i have been configuration but the result still not implement. This is Step By Step for my configuration1. Object --> User -->...
View ArticleRe: ECMP
Thank you my dear Spuluka,It was very helpfull,I test it in my enviroment and I will use it in production after two days.
View ArticleRe: Web Filtering Can't Work
Aris, You will have to reconfigure this. Action cannot be 'deny' for a webfiltering policy. Please refer to https://www.juniper.net/techpubs/software/screenos/screenos6.3.0/630_ce_AttackDetection.pdf...
View ArticleRe: ECMP
Hi Spuluka,Thank you for cooperation,Could you please Advise me What is the best design to load share the traffic with different bandwidth ( 20M and 8M and 2M ,...) ?
View ArticleSSG140 SNMP over Internet
Hi, I've been trying to configure Snmp on ssg140 over public/Internet to monitor on SolarWinds server. Got this message on ssg 'SNMP request from an unknown SNMP community aaa at X.X.X.X:xxxx has been...
View Article