Yup it is a bug, it works fine in 11.4R1.6. -- Leigh
> -----Original Message----- > From: Ben Dale [mailto:bd...@comlinx.com.au] > Sent: 20 March 2012 13:09 > To: Leigh Porter > Cc: juniper-nsp@puck.nether.net > Subject: Re: [j-nsp] Destination NAT on SRX cluster > > Hi Leigh, > > On 20/03/2012, at 10:53 PM, Leigh Porter wrote: > > > > > error: The number of destination NAT pools exceeds limit of 0 [edit > > security nat destination rule-set incoming-connections rule > > port-forward then destination-nat] 'pool' > > failed to get pool (wilderness) > > error: configuration check-out failed > > It looks like a bug, but try changing the "from interface reth0.352" to > "from zone <zone of interface reth0.352>" and see if the issue goes > away. Failing that, upgrade to 11.1R6 and see if that fixes it. > > Ben > > ______________________________________________________________________ > This email has been scanned by the Symantec Email Security.cloud > service. > For more information please visit http://www.symanteccloud.com > ______________________________________________________________________ ______________________________________________________________________ This email has been scanned by the Symantec Email Security.cloud service. For more information please visit http://www.symanteccloud.com ______________________________________________________________________ _______________________________________________ juniper-nsp mailing list juniper-nsp@puck.nether.net https://puck.nether.net/mailman/listinfo/juniper-nsp