Re: [j-nsp] MX960 vs MX10K

2020-03-04 Thread Ibariouen Khalid
mx10008 On Wed, Mar 4, 2020 at 12:59 PM Alexandre Guimaraes < alexandre.guimar...@ascenty.com> wrote: > > > What model of MX10k? > > > Em 04/03/2020 08:56, "juniper-nsp em nome de Ibariouen Khalid" < > juniper-nsp-boun...@puck.nether.net em nome de ibari

[j-nsp] MX960 vs MX10K

2020-03-04 Thread Ibariouen Khalid
dear Juniper community is there any limitation of using MX960 as DC-GW compared to MX10K ? juniper always recommends to use MX10K , but i my case i need MS-MPC which is not supported on MX10K and i want to knwo if i will have some limitation on MX960. Thanks _

[j-nsp] IP-sec Juniper MS-DPC

2016-03-19 Thread Ibariouen Khalid
Hi All can you please share with me a complete configuration if you have already done it for IPSec tunnel on MS-DPC ? do we have a way to secure redundancy between two MS chasis ? like we do with SRX/Netscreen ? it's quite urgent Thanks ___ juniper-ns

[j-nsp] IP-sec Juniper MS-MPC

2016-03-19 Thread Ibariouen Khalid
Hi All can you please share with me a complete configuration if you have already done it for IPSec tunnel on MS-DPC ? do we have a way to secure redundancy between two MS chasis ? like we do with SRX/Netscreen ? it's quite urgent Thanks ___ juniper-ns

[j-nsp] SRX and MX Security

2015-12-27 Thread Ibariouen Khalid
Hi we currenmly have an NS5400 firewalls (two FW in active /passive mode); we are thinking to replace it with MS-MIC/MPC on existing MX-960. can you please tell me if we can have redudancy with MX in this case ? for your information we have NAT and IP-Sec. i'm asking because in NS5400 we have HA po

Re: [j-nsp] encrypted-password /* SECRET-DATA */;

2012-08-06 Thread ibariouen khalid
n't collect passwords or > SNMP community strings. > To enable these, edit rancid.conf and set the following: > > FILTER_PWDS=NO; export FILTER_PWDS > NOCOMMSTR=NO; export NOCOMMSTR > > Cheers, > Gordon > > > > > On Mon, 6 Aug 2012 03:17:49 +, iba

Re: [j-nsp] encrypted-password /* SECRET-DATA */;

2012-08-05 Thread ibariouen khalid
Hi Jonathan the hash do not appear on the configuration i have ; the example bellow ("$1$sbvf432k$qYoeoRs9/t2kywPztwxl01") is from another router , with an old Junos version. Regards On Mon, Aug 6, 2012 at 2:51 AM, Jonathan Lassoff wrote: > On Sun, Aug 5, 2012 at 6:51 PM, iba

[j-nsp] encrypted-password /* SECRET-DATA */;

2012-08-05 Thread ibariouen khalid
Hi I'm running version 11.1R4.4 on an M10i ; i tried to load the configuration file from the M10i to an MX240 ( junos 12.x ) and i got an error regarding the following items : user core { uid ; class Admin; authentication { encrypted-password /* SECRET-DATA */; ## SECRET

Re: [j-nsp] NS 500

2011-10-03 Thread ibariouen khalid
i cant' figure out how to do it please give me more detail if yiou can Thanks On Mon, Oct 3, 2011 at 3:01 PM, Scott T. Cameron wrote: > Look up NAT. > > On Mon, Oct 3, 2011 at 9:48 AM, ibariouen khalid >wrote: > > > Hi all > > > > can you please tell me

[j-nsp] NS 500

2011-10-03 Thread ibariouen khalid
Hi all can you please tell me if it's possibl to route traffic in NS firewalls ( NS500 ) and change the port at the outgoing interface for example redirect request from ( port 554 , dest : 10.8.8.8 ) to ( port 5554 , dest : 10.8.8.8 ) Thanks ___ ju

[j-nsp] (no subject)

2011-04-29 Thread ibariouen khalid
Hi all i have one comment is a routing table on juniper M10: show route : 10.41.2.32/30 *[OSPF/10] 18:49:01, metric 4 *to 10.41.144.6* via ge-1/1/0.0 > via so-1/3/1.0 10.41.2.36/30 *[OSPF/10] 2d 00:12:05, metric 4 * to 10.4

[j-nsp] default_arp_policer

2010-12-21 Thread ibariouen khalid
Dear all Can someone tell me what is the default value of "default_arp_policer" ? is there any recommendation to reduce the values ;because i have an issue with an ARP storme and the router is impacted . thanks a lot ___ juniper-nsp mailing list junipe

[j-nsp] transparent VLANs

2010-10-04 Thread ibariouen khalid
Hi All can someone tell me if QinQ traffic can be Transported through VPLS without specifying the inner VLAN tag in the interface configuration ? the used hardware is M120 . Regards ___ juniper-nsp mailing list juniper-nsp@puck.nether.net https://puck.

[j-nsp] Junos 8.5 to junos 9.5

2010-09-02 Thread ibariouen khalid
Dear community I'm trying to load a* configuration file* from an old router with Junos 8.5 to a new Router with junos 9.5. can someone tell me if there is any reference that can help to check if there is any change on the commad between the two Junos versions !! Or if this is can be loaded direct

[j-nsp] NAT SSG-500

2010-08-24 Thread ibariouen khalid
Dear community i have the following design issue and i need your feed-back on it : i have many clients that need to be connected to internet; The traffic from client is comming from the trust zone via one interface and goes via untrust interface ; NAT is applied from trust to untrust to Nat the s

[j-nsp] NS 5200

2010-04-22 Thread Ibariouen Khalid
Hi all I'm tryning to upgarde a firewall NS5200 to sccreen OS6.0 . Pur frewall contains the following slots : Management board has a model number 5000-M2 I/O board has a model number 5000-24FE The I/O board has 2 fiber interfaces and 24 electrical interfaces. In the release note we have 6.0 c

Re: [j-nsp] NAT

2010-03-28 Thread Ibariouen Khalid
imanche 28 mars 2010 17:49 To: Ibariouen Khalid; juniper-nsp@puck.nether.net Subject: Re: [j-nsp] NAT I take it that interface is your untrust interface? Just out of curiousity, how long had those statistics been running when you pulled them up (i.e. When was the last time you cleared stats or re

Re: [j-nsp] NAT

2010-03-28 Thread Ibariouen Khalid
Hi It's policy based; No session timeouts is configured. BR/ -Original Message- From: Stefan Fouant [mailto:sfou...@shortestpathfirst.net] Sent: dimanche 28 mars 2010 16:57 To: Ibariouen Khalid; juniper-nsp@puck.nether.net Subject: RE: [j-nsp] NAT > -Original Message

Re: [j-nsp] NAT

2010-03-28 Thread Ibariouen Khalid
02:43 To: Ibariouen Khalid; juniper-nsp@puck.nether.net Subject: RE: [j-nsp] NAT > -Original Message- > From: juniper-nsp-boun...@puck.nether.net [mailto:juniper-nsp- > boun...@puck.nether.net] On Behalf Of Ibariouen Khalid > Sent: Friday, March 26, 2010 5:37 PM >

[j-nsp] NAT

2010-03-26 Thread Ibariouen Khalid
Hi all Can someone tell me what does "no nat vector means" exactelly : GFW01(M)-> get counter statistics interface ethernet1/3 Hardware counters for interface ethernet1/3: in bytes 201903417 | out bytes 2103176764 | early frame0 in packets2949387186 | out packets 24681

Re: [j-nsp] sessions ISG 2000

2010-03-24 Thread Ibariouen Khalid
sessions were built 1 second ago. Last 24 hours: 0: 1477066 1477066 were built in the last hour. These are permitted connections. Hope this helps, -Tim Eberhard On Wed, Mar 24, 2010 at 7:39 AM, Ibariouen Khalid mailto:ibariouen.kha...@ericsson.com>> wrote: Hi all Can someone tell me what

[j-nsp] sessions ISG 2000

2010-03-24 Thread Ibariouen Khalid
Hi all Can someone tell me what's the meaning of the following output ? Is it the number of sessions ?? GURGiFW:GURGiFW01(M)-> get performance session detail Last 60 seconds: 0: 818 1: 711 2: 723 3: 753 4: 697 5: 712 6: 703 7: 720 8: 706 9:

[j-nsp] question NAT - ISG2000

2010-03-24 Thread Ibariouen Khalid
Hi all Actually we are Nating around 11500 active internet users by a ISG-2000 with 4 public Ip addresses As my understanding the NAT is done per session not per user. Can you please tell me how to check if those ip addresses are enough or not ? BR/ _

[j-nsp] [port mirrorong M320]

2010-02-28 Thread Ibariouen Khalid
Dear community i have a question regarding port mirroring on juniper router; I'll be implementing port mirroring on M320 router forever ( I mean the mirroring will stay configured for ever ), this router is handling around 2.5G of traffic ; does the mirroring impact the performance of the route

[j-nsp] QoS in L2VPN

2009-12-01 Thread Ibariouen Khalid
Dear community Can someone send me a document which explains QoS in L2VPN. Thank you very much ___ juniper-nsp mailing list juniper-nsp@puck.nether.net https://puck.nether.net/mailman/listinfo/juniper-nsp

[j-nsp] manage nodes from Netscreen device

2009-10-18 Thread Ibariouen Khalid
Hi all Is it possible to perform SSH from Netscreen device? I know that telent is not possible ? Thanks ___ juniper-nsp mailing list juniper-nsp@puck.nether.net https://puck.nether.net/mailman/listinfo/juniper-nsp

[j-nsp] [Screen OS ] : Load sharing on two static routes to the same distination

2009-04-27 Thread Ibariouen Khalid
hi all I just want to know if there is a method to load-share between two static route in ScreenOS; I mean that I want to define two next-hope for the same destination. thanks ___ juniper-nsp mailing list juniper-nsp@puck.nether.net https://puck.nethe

[j-nsp] License : Juniper ISG-2000

2009-02-20 Thread Ibariouen Khalid
Hi all, I'm working now with ISG-2000 Firewall; I got the following output from "attahced file" : get license-key command. Can someone tell me if I need to look for a license on my firewall ? I have only a maximum of 3 VR. If yes please let me know how to install it ?? BR/ khalid ISG-1-NAHDA(

[j-nsp] Rib-group

2008-07-31 Thread Ibariouen Khalid
Hi ALL, please can someone help to understand rib-group.. i cN't find a clear document explaining the concept. i'll appreciat ure help. merci/ salutation khalid ___ juniper-nsp mailing list juniper-nsp@puck.nether.net https://puck.nether.net/mailman/l

[j-nsp] Route Distinguisher and Route Target

2008-04-11 Thread Ibariouen Khalid
Hi community .. i have one question regarding Route Distinguisher and Route Target : i our MPLS backbone we decided to configure " Route Distinguisher = Route Target " may this cause any problem ? plz let me know ___ juniper-nsp mailing list j

[j-nsp] RSVP on juniper M series

2008-02-19 Thread Ibariouen Khalid
hi all, does some one know if it is necessary to enable RSVP on loopback interfaces ? or just in the core interfaces ? BR/ khalid ___ juniper-nsp mailing list juniper-nsp@puck.nether.net https://puck.nether.net/mailman/listinfo/juniper-nsp

[j-nsp] (no subject)

2007-12-11 Thread Ibariouen Khalid
___ juniper-nsp mailing list juniper-nsp@puck.nether.net https://puck.nether.net/mailman/listinfo/juniper-nsp

[j-nsp] about counter statistics interface

2007-12-05 Thread Ibariouen Khalid
All, I am having problems interpreting some results that I am getting when I run the command - get counter statistics interface . I am seeing an unusually high number of "Early Frame" and "Late Frame" packets as well as "in overrun" Can anyone give me a better description of how to interp

[j-nsp] 'JUNOS' under VM Ware

2007-12-04 Thread Ibariouen Khalid
Hi all, does some one have the complete procedure to install 'JUNOS' under VM Ware : Requirements , prcedure ,packages , . If Anybody knows plzz Let me know BR/ khalid ___ juniper-nsp mailing list juniper-nsp@puck.nether.net https://puck.neth