Re: [j-nsp] SSG or J-series for virtual firewalling services?

2010-09-20 Thread Ben Dale
Hi Mike, In ScreenOS you can achieve all of your requirements using VSYS, however you will find this is a fairly expensive road to go down with large numbers of clients (VSYS are licensed). In JunOS you should be able to meet all of your requirements without any licensing issues - VRs are "fre

Re: [j-nsp] EX4500 Experiences?

2010-09-20 Thread Joe Hamelin
Thanks Chris, that answers that. -Joe -- Joe Hamelin, W7COM, Tulalip, WA, 360-474-7474 On Mon, Sep 20, 2010 at 12:32 PM, Chris Evans wrote: > It doesn't support fcoe as of yet.  There is another sku coming out next > year I believe that supports it. > >> Has anyone on-list deployed an EX4500 u

Re: [j-nsp] EX4500 Experiences?

2010-09-20 Thread Chris Evans
It doesn't support fcoe as of yet. There is another sku coming out next year I believe that supports it. > Has anyone on-list deployed an EX4500 using FCoE? How did it work out for you? > > > -- > Joe Hamelin, W7COM, Tulalip, WA, 360-474-7474 > ___ > jun

[j-nsp] EX4500 Experiences?

2010-09-20 Thread Joe Hamelin
Has anyone on-list deployed an EX4500 using FCoE? How did it work out for you? -- Joe Hamelin, W7COM, Tulalip, WA, 360-474-7474 ___ juniper-nsp mailing list juniper-nsp@puck.nether.net https://puck.nether.net/mailman/listinfo/juniper-nsp

[j-nsp] SSG or J-series for virtual firewalling services?

2010-09-20 Thread TCIS List Acct
We are looking to provide "virtual firewalling/VPN" services to customers hosted in our VMware and Hyper-V hosting environments (trying to avoid dedicating a physical NIC port for each customer on the host and hanging a firewall appliance off of each). In a nutshell, each customer gets their ow

Re: [j-nsp] Strange no memory issue on 10.0R3.10

2010-09-20 Thread Joe Goldberg
I was having an unrelated issue and this version was recommended to me by JTAC. I have not had any issues with it and it turns out my issue was configuration related not software relate and I just didn't see the need to downgrade as everything has been working, but my config is that of a pretty si

[j-nsp] Strange syslog messages "jsr_prl_recv_ack_msg" on MX240 with JunOS9.3S13

2010-09-20 Thread Joerg Staedele
Hi there, i have a lot of strange messages in my syslog file -> Sep 20 06:38:34 /kernel: jsr_sdrl_reinject:reinject failed 54 Sep 20 06:38:34 /kernel: jsr_sdrl_unreplicate_primary: reinject error (54) Sep 20 06:38:34 /kernel: jsr_sdrl_unrepl_socket: error 54 Sep 20 06:38:34 /kernel: jsr_unreplica

Re: [j-nsp] Strange no memory issue on 10.0R3.10

2010-09-20 Thread Maciej Jan Broniarz
W dniu 10-09-20 16:15, Joe Goldberg pisze: I have 2 x J4350's with 2 BGP feeds and each receiving about 320k routes with 1GB of RAM and I have no issues. My max RAM usage is 253MB. I'm running JunOS 10.1R2.8. Hmmm. Why 10.1R2.8 release? Juniper advice is to use 10.0R3.10 on every J device.

Re: [j-nsp] Strange no memory issue on 10.0R3.10

2010-09-20 Thread Joe Goldberg
I have 2 x J4350's with 2 BGP feeds and each receiving about 320k routes with 1GB of RAM and I have no issues. My max RAM usage is 253MB. I'm running JunOS 10.1R2.8. Joe On Mon, Sep 20, 2010 at 2:11 AM, Maciej Jan Broniarz wrote: > W dniu 10-09-20 00:40, Tim Harman pisze: > >> I've seen issue

Re: [j-nsp] Multiple Proxy ID SRX Route based VPN

2010-09-20 Thread Bikash Bhattarai
Hi Dale, Its seems great but I cannot make change on the other side. They use cisco and don't want to make any changes. Is it possible to do without GRE and Policy Based VPN? Thanks in advance. Regards, Bikash Bhattarai -Original Message- From: Ben Dale [mailto:bd...@comlinx.com

Re: [j-nsp] Multiple Proxy ID SRX Route based VPN

2010-09-20 Thread Bikash Bhattarai
Dear Michael, I have tried with one to one proxy id's. It works great but it doesn't work for multiple proxy-ids. Help needed. Thanks in advance. Regards, Bikash Bhattarai Technical Manager Dristi Tech Pvt. Ltd. skype: bkbhattarai mob:+977-9851039710 -Original Message- From: Michae

Re: [j-nsp] Multiple Proxy ID SRX Route based VPN

2010-09-20 Thread Michael Damkot
Have you tried anything to date? On Sep 20, 2010, at 08:49 , Bikash Bhattarai wrote: > Dear all, > > > > I need a solution on SRX 210 to create a route based vpn with cisco 1841 > with multiple proxy-ids. > > > > Regards, > > Bikash Bhattarai > > Technical Manager > > Dristi Tech Pvt.

Re: [j-nsp] Multiple Proxy ID SRX Route based VPN

2010-09-20 Thread Ben Dale
Hi Bikash, You may find it easier to configure GRE over IPSEC. Your proxy-ids then only need to match the GRE tunnel endpoint addresses, and you can then route any traffic you require across the GRE tunnel (which in-turn will be encrypted across the IPSEC tunnel). Cheers, Ben On 20/09/201

[j-nsp] Multiple Proxy ID SRX Route based VPN

2010-09-20 Thread Bikash Bhattarai
Dear all, I need a solution on SRX 210 to create a route based vpn with cisco 1841 with multiple proxy-ids. Regards, Bikash Bhattarai Technical Manager Dristi Tech Pvt. Ltd. skype: bkbhattarai mob:+977-9851039710 ___ juniper-nsp mailing

[j-nsp] rpd process becomes stuck

2010-09-20 Thread Good One
We have a couple of MX-480 running junos-10.0-R2.10. Occasionally (it's happened 3 or 4 times in 4 months on the both boxes) rpd deamon stopped responding and you have to give him (rpd deamon) a hard reset. The interesting thing is when rpd becomes stuck you could not execute commands l