Note: If the SRX device is connected to an L2 switch, the bpdu-vlan-flooding command would be needed. Set protocols l2-learning global-mode transparent-bridge Set interfaces irb unit 20 family inet address 10.0.0.254/24 Set interfaces ge-0/0/3 unit 0 family ethernet-switching vlan members vlan-10 Set interfaces ge-0/0/3 unit 0 family ethernet-switching interface-mode access Set interfaces ge-0/0/2 unit 0 family ethernet-switching vlan members vlan-10 Set interfaces ge-0/0/2 unit 0 family ethernet-switching interface-mode access Set interfaces ge-0/0/1 unit 0 family ethernet-switching vlan members vlan-10 Set interfaces ge-0/0/1 unit 0 family ethernet-switching interface-mode access
Set interfaces ge-0/0/0 unit 0 family ethernet-switching vlan members vlan-20 Set interfaces ge-0/0/0 unit 0 family ethernet-switching interface-mode access Set security zones security-zone Trust interfaces ge-0/0/3.0 Set security zones security-zone DMZ interfaces ge-0/0/2.0 Set security zones security-zone Untrust interfaces ge-0/0/1.0
Set security zones security zone MGMT interface ge-0/0/0.0 Set security zones security-zone MGMT host-inbound-traffic system-services all Set security policies from-zone Trust to-zone DMZ policy trust-untrust then permit Set security policies from-zone Trust to-zone DMZ policy trust-untrust match application any Set security policies from-zone Trust to-zone DMZ policy trust-untrust match destination-address any Set security policies from-zone Trust to-zone DMZ policy trust-untrust match source-address any Set security policies from-zone Untrust to-zone DMZ policy trust-untrust then permit Set security policies from-zone Untrust to-zone DMZ policy trust-untrust match application junos-https Set security policies from-zone Untrust to-zone DMZ policy trust-untrust match application junos-http Set security policies from-zone Untrust to-zone DMZ policy trust-untrust match destination-address any Set security policies from-zone Untrust to-zone DMZ policy trust-untrust match source-address any Set security policies from-zone Trust to-zone Untrust policy trust-untrust then permit Set security policies from-zone Trust to-zone Untrust policy trust-untrust match application any Set security policies from-zone Trust to-zone Untrust policy trust-untrust match destination-address any
Set security policies from-zone Trust to-zone Untrust policy trust-untrust match source-address any Note: System reboot is required after commit. Example - Configure Transparent mode on Junos OS 15.1X49 SRX platform thumbsupġ Article ID: KB31147 KB Last Updated: Version: 6.0 Summary:
SRX300 SHOW MAC ADDRESS FREE
A complete listing of local toll free numbers are available at Contact Support. Should you have any issues during this time, you can open a case in the Juniper Support Portal, or call us toll free at 1-88.