Re: [j-nsp] Default SRX Behaviour

2010-08-06 Thread William Jackson
I am suffering exactly the same symptoms for nearly exactly the same reasons, I have a JTAC case open and they have told me to implement: Set security flow tcp-session no-syn-check But it doesn't seem to have made a difference :-( We are running srx240s in a cluster with 10.0R3.10 code.

Re: [j-nsp] Default SRX Behaviour

2010-08-06 Thread Piotr Bratkowski
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Hi, Maybe you should enable logging on your policy permit rules ( session-close) and see what logs says about reason for closing the session. Regards, Piotr Bratkowski W dniu 2010-08-06 12:28, Pavel Lunin pisze: Hi Paul, Thanks - it's looking

[j-nsp] Single Fiber SM SFP

2010-08-06 Thread Brendan Mannella
Does anyone know a company that makes a SFP that works with Juniper EX switches for use with a single strand of single modeĀ fiber? Cisco has the following.. 1000BASE-BX10-D and 1000BASE-BX10-U SFP for Single-Fiber Bidirectional Applications The 1000BASE-BX-D and 1000BASE-BX-U SFPs,

Re: [j-nsp] Single Fiber SM SFP

2010-08-06 Thread Malte von dem Hagen
Hi, Am 06.08.10 14:56, schrieb Brendan Mannella: Does anyone know a company that makes a SFP that works with Juniper EX switches for use with a single strand of single mode fiber? Cisco has the following.. what about

Re: [j-nsp] Single Fiber SM SFP

2010-08-06 Thread Brendan Mannella
Wow, they have added some SFPs, there werent nearly that many options last i checked. Sorry about that. - Original Message - From: Malte von dem Hagen m...@hosteurope.de To: Brendan Mannella bmanne...@teraswitch.com Cc: juniper-nsp juniper-nsp@puck.nether.net Sent: Friday, August 6,

Re: [j-nsp] Single Fiber SM SFP

2010-08-06 Thread Stefan Fouant
-Original Message- From: juniper-nsp-boun...@puck.nether.net [mailto:juniper-nsp- boun...@puck.nether.net] On Behalf Of Brendan Mannella Sent: Friday, August 06, 2010 8:57 AM To: juniper-nsp Subject: [j-nsp] Single Fiber SM SFP Does anyone know a company that makes a SFP that

Re: [j-nsp] Single Fiber SM SFP

2010-08-06 Thread Keegan Holley
Have you tried Juniper? I have used cisco 1G sfp's with EX's in the past so 10G should probably work as well. The only issue is that sh chassis hardware will read unknown. Maybe I don't understand the question but Juniper sells sfp's for it's gear the same way cisco does. They are probably

Re: [j-nsp] Single Fiber SM SFP

2010-08-06 Thread Eric Van Tol
-Original Message- From: juniper-nsp-boun...@puck.nether.net [mailto:juniper-nsp- boun...@puck.nether.net] On Behalf Of Keegan Holley Sent: Friday, August 06, 2010 11:03 AM To: Brendan Mannella Cc: juniper-nsp Subject: Re: [j-nsp] Single Fiber SM SFP Have you tried Juniper? I

Re: [j-nsp] Single Fiber SM SFP

2010-08-06 Thread Byron L. Hicks
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 On 8/6/2010 11:15 AM, Eric Van Tol wrote: Unless you like being price-gouged where it hurts the most by Juniper, I'd suggest looking at third-party vendors like MRV or Finisar for SFPs. We have used Champion One single-fiber SFPs in our Cisco

[j-nsp] virtual-chassis and interfaces

2010-08-06 Thread snort bsd
Hi all: With virtual-chassis, after I login, I only see interfaces (under stanza interfaces) on master, not those interfaces on the back up mode or line card mode. How could I configure those interfaces that are not on master? do I have to login each physical switch in order to configure

Re: [j-nsp] virtual-chassis and interfaces

2010-08-06 Thread Piotr Bratkowski
Hi, Just configure them. Just remember about naming convention. Regards, Piotr Bratkowski W dniu 2010-08-06 21:00, snort bsd pisze: Hi all: With virtual-chassis, after I login, I only see interfaces (under stanza interfaces) on master, not those interfaces on the back up mode or line

Re: [j-nsp] virtual-chassis and interfaces

2010-08-06 Thread snort bsd
just configure them? under interface stanze of each member of the virtual-chassis? --- On Sat, 7/8/10, Piotr Bratkowski pioterb...@o2.pl wrote: From: Piotr Bratkowski pioterb...@o2.pl Subject: Re: [j-nsp] virtual-chassis and interfaces To: juniper-nsp@puck.nether.net Received: Saturday, 7

Re: [j-nsp] virtual-chassis and interfaces

2010-08-06 Thread Piotr Bratkowski
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Hello, Login to the master, edit - edit interfaces and then ge-0/0/0 for ge-0/0/0 on master ge-1/0/0 for second member and so on ( or it could be ge-0/1/0 for the second member I don't remeber the convention) Regards, Piotr Bratkowski W dniu

Re: [j-nsp] virtual-chassis and interfaces

2010-08-06 Thread Stefan Fouant
-Original Message- From: juniper-nsp-boun...@puck.nether.net [mailto:juniper-nsp- boun...@puck.nether.net] On Behalf Of snort bsd Sent: Friday, August 06, 2010 3:01 PM To: juniper-nsp Subject: [j-nsp] virtual-chassis and interfaces Hi all: With virtual-chassis, after I login, I

[j-nsp] (H-)VPLS over LDP, documentation?

2010-08-06 Thread Felipe Zanchet Grazziotin
Hello, I've been trying to setup multi-vendor (H-)VPLS, but unfortunately it can only be done over LDP. I'm aware of all problems of scalability, and so on, about VPLS when done over LDP, but the other vendor just cannot do it over BGP now. All Juniper I've found documentation about this

Re: [j-nsp] (H-)VPLS over LDP, documentation?

2010-08-06 Thread Felipe Zanchet Grazziotin
Hi again, hate to answer myself, but a better search found good answers. A blog entry with examples: http://adisubrata.wordpress.com/2007/11/18/vpls-ldp-configuration/ And JunOS 8.4 configuration from Juniper's website:

Re: [j-nsp] (H-)VPLS over LDP, documentation?

2010-08-06 Thread Andy Harding
juniper does support LDP for [H-]VPLS, although they don't shout about it. I have done interop testing between juni mx's tellabs 8800's it works fine ~andy -Original Message- From: juniper-nsp-boun...@puck.nether.net [mailto:juniper-nsp- boun...@puck.nether.net] On Behalf Of Felipe