Transparent mode segmentation on SSG20 ?
Hi, I am new to Juniper, I have configured with a lot of 'pain' my SSG5 as testing FW.I have followed the procedure from internet and a book on how to deal with the 'transparent mode segmentation' but...
View ArticleRe: Many - to - One NAT
My understanding was that you were trying to configure the destination NAT so gave you the documents accordingly. DIP is for source NAT and I hope you already have the document now. The "invailid DIP...
View ArticleRe: Transparent mode segmentation on SSG20 ?
Hi, It's up to you how do you want to deploy. You can create a bigger subnet to cover all smaller ones, or use different ports for the different subnet(this will exhaust your ports). Or create...
View ArticleRe: Transparent mode segmentation on SSG20 ?
Not easy to do with my technical level I was thinking about using VSYS but it seems that I do need a Licence which I do not have ... I will have a look about it when I will have received my SSG.Thx
View ArticleWhat model of FW to choose ?
Hi, I am looking to buy a Juniper FW, I am looking for something equivalent to the SSG20 ... Any advise ? Thxps: where to find prices for licences ?
View ArticleRe: What model of FW to choose ?
SSG20 is EOL.http://www.juniper.net/support/eol/ns_hw.htmlhttp://www.juniper.net/us/en/how-to-buy/ Thanks,Vikas
View ArticleRe: What model of FW to choose ?
Hello, As Vikas has said, SSG20 is EoL.But you can chose from an array of juniper SRX Devices which are capable of doing many things.SRX110, SRX220, SRX300 series are some of the models you can look...
View ArticleRequest ScreenOS 6.3.0r3 for ISG1000
Hi. Currently, we have adquired a ISG1000 and it has the 5.3.0r3 version and need get the 6.3.0r3 version in order to form a cluster with other ISG1000. We have readed that is necesary to upgrade to...
View ArticleRe: Request ScreenOS 6.3.0r3 for ISG1000
Hello, You can use the link below for the upgrade guide: http://www.juniper.net/techpubs/software/screenos/screenos6.3.0/630_upgrade.pdf Using link below you will be able to download 6.3.0r3 provided...
View ArticleRe: cannot download config file from GUI after upgrade
Kimffrey, Sorry you are having such problems. Here are the steps you can take to transfer a file copy off the SSG from the CLI. Install a TFTP utility on your computer and put your computer on a...
View ArticleRe: MIP VPN
Rules are required for the direction of traffic flow initiated ingress Zone to egress Zone. Packet arrives on an interface, the assigned zone of this interface becomes the ingress zone of the...
View ArticleRe: SSG5 Bandwith problems
Thanks for testing in front of the firewall to verify the circuit. So we do know that there is a bandwidth restriction on the SSG. I would look for any policy that has policer turned on. From the CLI...
View ArticleRe: Juniper SSG550 dual wan default route issue
The simpliest way to work around this issue is to install two identical routes to the remote gateway out of both providers. This will allow both to respond and setup tunnels to the remote office. set...
View ArticleRe: Transparent mode segmentation on SSG20 ?
You cannot use transparent mode for multiple subnets. Transparent mode is used when ALL the connections to the SSG are in the SAME broadcast domain. This is used to insert a firewall in-line for...
View ArticleRe: MIP VPN
I think I have expressed myself wrong. The concept of zones and plocies is clear. What I mean: If I send data from my site to the partner, they arrive on the bgroup0 (zone Trust) and go to the tunnel...
View ArticleRe: MIP VPN
Sorry, I had forgotten we were talking about a MIP here. You are right this is confusing. MIP are in the global zone for some reason. Thus policies that use MIP are written to the global zone. When...
View ArticleRe: Transparent mode segmentation on SSG20 ?
Hi, Thx for your reply.I might have from a colleague an SRX 110 or 120 to play with ...Can you please tell me where to find information concerning Layer 3 deploy ? Thx
View ArticleRe: SSG5 Bandwith problems
This is what I got from my Juniper config :set policy id 27 from "Untrust" to "Trust" "Any" "VIP(ethernet0/0)" "ANY" permit traffic gbw 100000 priority 0 pbw 100000
View ArticleRe: Transparent mode segmentation on SSG20 ?
Hello, You can refer to links below: https://www.juniper.net/techpubs/en_US/release-independent/junos/topics/concept/services-gateway-srx210-basic-configuration-preparing.html...
View Article