[j-nsp] Intrazone IPSEC

2015-08-20 Thread SunnyDay
hi all Im trying to set up intra zone policy based VPN on SRX and it doesnt work, below the config: from-zone trust to-zone trust { policy 1 { match { source-address [ local remote ]; destination-address [ remote local ];

Re: [j-nsp] DNS

2010-03-01 Thread SunnyDay
owing anyting more about your environment, could be a vsys problem (high-end firewalls). 4) VPNs involved? Thanks, Barny Sanchez | Consulting Engineer - Security Systems | Juniper Networks On Mar 1, 2010, at 7:04 AM, SunnyDay wrote: Hello I Have 2 netscreen firewall connected on behin

[j-nsp] DNS

2010-03-01 Thread SunnyDay
Hello I Have 2 netscreen firewall connected on behind the other. eth0eth1 eth3 internet <---FW1<-->FW2 My problem is that FW2 from the cli is not able to do name resolution.eg: ping www.google.com.FW1 is able to ping www.google.com I configured on FW

[j-nsp] Routing between routing instance

2010-01-20 Thread SunnyDay
Hello i have configured a routing instance as vrf type.And configured this: interface-routes { rib-group inet InstanceA; rib-groups { InstanceA { import-rib [ InstanceA.inet.0 inet.0 ]; Which caused all the interface routes to be imported to the Routing instance routing table

[j-nsp] pppoe mx

2010-01-05 Thread SunnyDay
Hello does anyone have any configs on how to terminate pppoe to an MX router? Thank You __ Information from ESET NOD32 Antivirus, version of virus signature database 4743 (20100104) __ The message was checked by ESET NOD32 Antivirus. http://www.eset.com

[j-nsp] Track-ip

2009-12-14 Thread SunnyDay
Hello I need to have a backup adsl and the srx to failover to the adsl when the primary fails.Everyone says to do it with event scripts but its not very clear on how to do it. Anyone has any template config or instruction on how to configure an event script for monitoring the gateway of an i

Re: [j-nsp] Ospf preference

2009-09-30 Thread SunnyDay
yes for that prefix if it is possible. Matthew Walster wrote: Do you mean just for that prefix, or that the route via router 3 is preferred for everything but router 2? If the latter, surely you just adjust the OSPF metric? Matthew Walster 2009/9/30 SunnyDay mailto:cscosu...@gmail.com

[j-nsp] Ospf preference

2009-09-30 Thread SunnyDay
Hello i have 3 routers and they are all configured with ospf router 1 has 10.0.0.0 subnet from router 2 and router 3 with the same preference i want to make the preference advertised from router 2 to be preferred over router 3 for network 10.0.0.0.Is this done via policy options? Thank You

[j-nsp] Management ports

2009-09-23 Thread SunnyDay
Hello is there some way to change the default management ports(22,23,443) to some other port number? Thank you __ Information from ESET NOD32 Antivirus, version of virus signature database 4448 (20090922) __ The message was checked by ESET NOD32 Antivirus. http://www.eset.com

[j-nsp] Screenos multilink

2009-03-27 Thread SunnyDay
Hello does anyone know to which interfaces can i configure a multilink bundle? is it only serial interfaces? ___ juniper-nsp mailing list juniper-nsp@puck.nether.net https://puck.nether.net/mailman/listinfo/juniper-nsp

[j-nsp] NSM

2009-02-11 Thread SunnyDay
Hello Any one knows how can i configure a j series router so i can import it to Netscreen Security Manager? ( NSM ) Thank You ___ juniper-nsp mailing list juniper-nsp@puck.nether.net https://puck.nether.net/mailman/listinfo/juniper-nsp

[j-nsp] E320 question

2009-02-06 Thread SunnyDay
hello Will a cnf config file work from an E320 to E120 ? Thanks ___ juniper-nsp mailing list juniper-nsp@puck.nether.net https://puck.nether.net/mailman/listinfo/juniper-nsp

[j-nsp] Wan Acceleration

2009-01-30 Thread SunnyDay
Hello Does the WX series for wan acceleration offer encryption as well? Thank You ___ juniper-nsp mailing list juniper-nsp@puck.nether.net https://puck.nether.net/mailman/listinfo/juniper-nsp

[j-nsp] Mpls Ldp

2009-01-23 Thread SunnyDay
Hello i have some issues between a cisco router and a E320 concerning mpls ldp i was wondering if any one knows what are the default modes for cisco for: Label distribution control mode Label retention mode Label advertisement mode Thank you ___ junip

[j-nsp] ScreenOS problem

2009-01-22 Thread SunnyDay
Hello i have am ssg 140 running screenOS 6.1.0r2.0. i have 2 adsl pims load balancing traffic.i have configured to adsl1/0 a dsl subinterface with a different pvc and different pppoe connection.The problem is after 2 or 3 days the adsl interface is down and a restart is required for the interfac

[j-nsp] dymanic interfaces junose

2008-12-19 Thread SunnyDay
Hello In junose ihave this configuration on an interface: i/nterface gigabitEthernet 1/0/1 shutdown mtu 1522 encapsulation vlan vlan bulk-config "test" profile vlan bulk-config "test" "test pro" vlan bulk-config "test" vlan-range 567 667 /my problem is that the interface is shutdown but i still

[j-nsp] Multilink question

2008-12-16 Thread SunnyDay
hello i have an e320 and i want to configure multilink ppp but i have some questions. the thing i have done is this: i have 2 VRs VR-1 and VR-Multilink interface loopback 1 (VR-1_ ip add 1.1.1.1 /32 interface loopback 40 (VR-Multilink) ip add 2.2.2.2 /32 aaa domain-map "mlppp.test.kk" router-

[j-nsp] traceroute output

2008-12-09 Thread SunnyDay
hello can anyone explain what this means and all hops are the same? traceroute 10.10.10.15 Tracing route to 10.10.10.15, TTL = 32, timeout = 2 sec. (Press ^c to stop.) 1 0ms 0ms 0ms 10.10.10.15 2 10ms 10ms 10ms 10.10.10.15 3 10ms 12ms 12ms 10.10.10.15 4 10ms 10m

[j-nsp] bgp/mpls vpn

2008-12-09 Thread SunnyDay
hello i have configured a bgp/mpls vpn which lokks like this: address-family vpnv4 unicast no check-vpn-next-hops neighbor x.x.x.x activate address-family ipv4 unicast vrf test no synchronization no auto-summary redistribute rip redistribute connected redistribute access redistribute ac

[j-nsp] E320 upgrade question

2008-12-08 Thread SunnyDay
hello i have a E320 with software release 8.x.x and i want to upgrade to release 9.x.x is there any limitation on hardware e.g(LM,SRP)? thank you ___ juniper-nsp mailing list juniper-nsp@puck.nether.net https://puck.nether.net/mailman/listinfo/juniper-ns

[j-nsp] Rarp Junos

2008-12-05 Thread SunnyDay
hello is RARP supported on M-series and T-series? i searched a whole bunch of documentation and came up with nothing. thanks ___ juniper-nsp mailing list juniper-nsp@puck.nether.net https://puck.nether.net/mailman/listinfo/juniper-nsp

[j-nsp] screenos question

2008-11-20 Thread SunnyDay
reffering to previous question i want to configure the sub interface as bridge and place a cpe on one ethernet port of the ssg and the cpe get an ip on its ethernet directly. how can i configure that? ___ juniper-nsp mailing list juniper-nsp@puck.neth

Re: [j-nsp] Screenos problem

2008-11-20 Thread SunnyDay
or create another zone to the untrust virtual router Pavel Lunin wrote: SunnyDay wrote: Hello im trying to create a dls sub interface and i get this message any clues? SSG140-> set interface adsl2/0.1 pvc 8 36 zone Untrust Zone Untrust traffic shaping has been enabled! Disable traf

[j-nsp] Screenos problem

2008-11-20 Thread SunnyDay
Hello im trying to create a dls sub interface and i get this message any clues? SSG140-> set interface adsl2/0.1 pvc 8 36 zone Untrust Zone Untrust traffic shaping has been enabled! Disable traffic shaping before binding. ___ juniper-nsp mailing lis

[j-nsp] SSL question

2008-11-18 Thread SunnyDay
hello is it possible for a user to login to a page that has host checker enabled and if the criteria are matched (or not) redirect the user to another sign in page. Thank you ___ juniper-nsp mailing list juniper-nsp@puck.nether.net https://puck.nether

Re: [j-nsp] bgp as-path

2008-11-14 Thread SunnyDay
after this filtering. So it works for AS-PATHs with both public/private ASN combinations. -Original Message----- From: SunnyDay [mailto:[EMAIL PROTECTED] Sent: Friday, November 14, 2008 12:43 PM To: Hyunseog Ryu Cc: SunnyDay; juniper-Nsp Subject: Re: [j-nsp] bgp as-path yes i know but w

Re: [j-nsp] bgp as-path

2008-11-14 Thread SunnyDay
-Original Message- From: SunnyDay <[EMAIL PROTECTED]> Sent: Friday, November 14, 2008 12:35 PM To: juniper-Nsp Subject: [j-nsp] bgp as-path hello i want to know what will the behavior be if AS-PATH contains both public and private ASN and is possible to remove al

[j-nsp] bgp as-path

2008-11-14 Thread SunnyDay
hello i want to know what will the behavior be if AS-PATH contains both public and private ASN and is possible to remove all private ?? Thanks ___ juniper-nsp mailing list juniper-nsp@puck.nether.net https://puck.nether.net/mailman/listinfo/juniper-ns

[j-nsp] Screenos interface

2008-11-10 Thread SunnyDay
Hello is it possible to shutdown an interface in screenos? i have seen the "exec interface" command but nothing comes out. thank you ___ juniper-nsp mailing list juniper-nsp@puck.nether.net https://puck.nether.net/mailman/listinfo/juniper-nsp

[j-nsp] Dns problem screen os

2008-11-05 Thread SunnyDay
hello im using screenos 6.1.0r2 i have configured sever bgroup interfaces which are also dhcp servers. the ssg has 3 adsl connections.all bgroup interfaces have dns#1 from isp1 and dns#2 from isp2 but after some days suddenly the dns on all interfaces changes to the dns of the 3rd isp. any idea

[j-nsp] Screenos Antispam

2008-11-03 Thread SunnyDay
Hello i have an ssg 140 with screenos 6.1.0r2 and i want to use the antispam feature. i have enabled it from untrust zone to the mail servers zone with junipers predefined server, it doesnt seem to work.i tried setting manually a black list address and worked. here is an output of debug on ssg

[j-nsp] ScreenOS question

2008-10-24 Thread SunnyDay
Hello a stupid question maybe. When i ping to a host i can see from the logging of the firewall this: 192.168.40.10:24064 192.168.100.11:512 192.168.40.10:24064 192.168.100.11:512 ICMP my question is this i thing that icmp does not have a port,why do i get a dst-port from this output? ho

[j-nsp] bridge group interfaces

2008-10-20 Thread SunnyDay
hello im using screenOS 6.1r2 ihave configured 9 bridge group interfaces (e.g bgroup0/0.10) the thing is when i try to remove one either from WebUi and CLI all of the interfaces disappear then you have to reboot to have normal operation. any ideas? Thank you ___

Re: [j-nsp] web redirection

2008-10-17 Thread SunnyDay
i dont want to redirect traffic for we filtering i think just plain web redirection Stefan Fouant wrote: Can you please clarify if you intend to perform URL filtering or Anti-Virus scanning? On 10/17/08, SunnyDay <[EMAIL PROTECTED]> wrote: hello does juniper netscreen ssg series s

[j-nsp] web redirection

2008-10-17 Thread SunnyDay
hello does juniper netscreen ssg series support web redirection? thank you ___ juniper-nsp mailing list juniper-nsp@puck.nether.net https://puck.nether.net/mailman/listinfo/juniper-nsp

[j-nsp] aaa accounting

2008-10-01 Thread SunnyDay
hello can anyone explain the use of these commands? "aaa service accounting interval"* *"aaa user accounting interval" Thank you ___ juniper-nsp mailing list juniper-nsp@puck.nether.net https://puck.nether.net/mailman/listinfo/juniper-nsp

Re: [j-nsp] ping output

2008-09-26 Thread SunnyDay
its JUNOSe [EMAIL PROTECTED] wrote: Are you working on 9.1+ JUNOS version? ;) (cf: "Bizaare bug of the year award" :p) From: [EMAIL PROTECTED] on behalf of SunnyDay Sent: Fri 26/09/2008 12:03 To: Juniper-Nsp Subject: [j-nsp] ping output hello

[j-nsp] ping output

2008-09-26 Thread SunnyDay
hello anyone can explain this output has 200% success? bras01:(config)#run ping x.x.x.x Sending 5 ICMP echoes to x.x.x.x, timeout = 2 sec. ! Success rate = 200% (10/5), round-trip min/avg/max = 0/1/9 ms bras01:(config)# Thank you ___ ju

[j-nsp] Bgp mpls/vpn

2008-09-25 Thread SunnyDay
hello I want to configure a mpls/vpn with hub and spoke topology on erx 320. the customers may or may not be in the same PE router. I configure one vrf for the hub with route target export 1:100 and import 1:200 and 2 other vrfs with import 1:100 and export 1:200 respectively. Will this work

[j-nsp] SA-2500 Secure meeting

2008-09-19 Thread SunnyDay
Hi I have A SA-2500 and when i try to configure a smtp server for secure meeting i get an "smtp server name unknown" any ideas why is that?The SA pings the smtp server from internal port. Thanks ___ juniper-nsp mailing list juniper-nsp@puck.nether.net

[j-nsp] ERX pools

2008-09-15 Thread SunnyDay
Hello i have a virtual router vr-test and in that virtual router several vrf`s "vr-test:testvrf" i have one question is it possible to configure to virtual router vr-test a local pool so from that pool the vrf subscribers also can receive an ip address or do i have to configure it inside the vr

[j-nsp] SSG140 traffic shaping

2008-09-05 Thread SunnyDay
Hello when i configure traffic shaping to policies it only seems to work for policing bandwidth. when i try to configure in one policy Guaranteed Bandwidth and maximum Bandwidth instead of policing bandwidth i suddenly dont have any traffic at all towards the internet.when i return to polici

Re: [j-nsp] MIP issue

2008-09-02 Thread SunnyDay
] Sent: Tuesday, September 02, 2008 5:06 PM To: SunnyDay Cc: Juniper-Nsp Subject: Re: [j-nsp] MIP issue On Wed, Jun 1, 2005 at 12:09 AM, SunnyDay <[EMAIL PROTECTED]> wrote: > The policy is from untrust to global with source any destination MIP > And no I dont have route.i don't unde

Re: [j-nsp] MIP issue

2008-09-02 Thread SunnyDay
The policy is from untrust to global with source any destination MIP And no I dont have route.i don't understand the use of the route or what route to configure. -Original Message- From: Stefan Fouant [mailto:[EMAIL PROTECTED] Sent: Tuesday, September 02, 2008 4:27 PM To: Sun

[j-nsp] MIP issue

2008-09-02 Thread SunnyDay
I have 1 adsl interface in the untrust zone and I have configured a loopback with another public ip address And made the adsl member of loopback group.(the loopback interface). I now go to the loopback interface to configure a mip. Then I configure the policy from untrust to Testing zone. W

[j-nsp] MIP issue

2008-09-02 Thread SunnyDay
Hello I have 1 adsl interface in the untrust zone and I have configured a loopback with another public ip address And made the adsl member of loopback group.(the loopback interface). I now go to the loopback interface to configure a mip. Then I configure the policy from untrust to Testing zone

[j-nsp] SSG

2008-09-01 Thread SunnyDay
Hello Is there anyway to log failed login attempts to SSG firewalls? Thank you ___ juniper-nsp mailing list juniper-nsp@puck.nether.net https://puck.nether.net/mailman/listinfo/juniper-nsp

Re: [j-nsp] Vpn in active/active HA

2008-08-29 Thread SunnyDay
Im not going to use cerificates just policy based vpn or route-based is there any issue on these? -Original Message- From: Sidney Boumendil [mailto:[EMAIL PROTECTED] Sent: Friday, August 29, 2008 1:06 PM To: SunnyDay Cc: Juniper-Nsp Subject: Re: [j-nsp] Vpn in active/active HA On 8/29

[j-nsp] Vpn in active/active HA

2008-08-29 Thread SunnyDay
Hello is there anything specific setting to watch out for when configuring a vpn in two ssg when in high availability active/active state? Thank you ___ juniper-nsp mailing list juniper-nsp@puck.nether.net https://puck.nether.net/mailman/listinfo/junip

[j-nsp] Policy traffic shaping netscreen

2008-08-18 Thread SunnyDay
Hello I have an SSG 140 with screenOS 6.1.0r2.0 And I have a problem with policy traffic shaping which does no seem to work proper. When I configure a policy with guaranteed bw and maximum bw traffic seems to be matched at another policy with another source address than the one configured.

[j-nsp] Source Based Routing

2008-08-13 Thread SunnyDay
Hello I trying to configure source based routing on a ssg140. The ssg has 3 adsl lines 2 adsl cards and one bridged pppoe on an Ethernet. I have put the interfaces to the untrust-vr and local network to the trust-vr with the appropriate zones. I have 4 subnets 192.168.10.1 192.168.20.1 192.168.

Re: [j-nsp] load balance traffic

2008-07-25 Thread sunnyday
time=80.231 ms === -Original Message- From: Erdem Sener [mailto:[EMAIL PROTECTED] Sent: Friday, July 25, 2008 2:54 PM To: sunnyday Subject: Re: [j-nsp] load balance traffic Hi, Can you check if you have "system default-address-selection" configured? If it's there, delete it an

Re: [j-nsp] load balance traffic

2008-07-25 Thread sunnyday
] [mailto:[EMAIL PROTECTED] On Behalf Of sunnyday Sent: Friday, July 25, 2008 1:12 PM To: Juniper-Nsp Subject: [j-nsp] load balance traffic Hello I have a j router with 2 adsl cards they have been assigned ip address from the bras. pp0.0 upup inet 10.11.11.7

[j-nsp] load balance traffic

2008-07-25 Thread sunnyday
Hello I have a j router with 2 adsl cards they have been assigned ip address from the bras. pp0.0 upup inet 10.11.11.7 --> 1.1.1.1 pp0.1 upup inet 10.11.11.8 --> 1.1.1.1 the problem is that only one adsl card(

Re: [j-nsp] Routing question

2008-07-24 Thread sunnyday
And lets say you configure 2 static routes for the route 1.1.1.1 one for each interface and no preference added to the static routes. What will happen then? -Original Message- From: Nalkhande Tarique Abbas [mailto:[EMAIL PROTECTED] Sent: Thursday, July 24, 2008 12:35 PM To: sunnyday

[j-nsp] Routing question

2008-07-24 Thread sunnyday
Hello im going to ask a stupid question guys. I have 2 paths to a route one is fast Ethernet and one is serial and no routing protocol is present Which interface will be selected? ___ juniper-nsp mailing list juniper-nsp@puck.nether.net https://p

Re: [j-nsp] SecurID netscreen problem

2008-07-22 Thread sunnyday
Ok I managed to got it working thanks for your help Stefan. -Original Message- From: Stefan Fouant [mailto:[EMAIL PROTECTED] Sent: Monday, July 21, 2008 8:03 PM To: sunnyday Cc: Juniper-Nsp; [EMAIL PROTECTED] Subject: Re: [j-nsp] SecurID netscreen problem The tunnel can be treated as

Re: [j-nsp] SecurID netscreen problem

2008-07-21 Thread sunnyday
emote how can you do AUTH Authentication? I have only see preshared key and preshared key with Xauth. -Original Message- From: Stefan Fouant [mailto:[EMAIL PROTECTED] Sent: Monday, July 21, 2008 8:03 PM To: sunnyday Cc: Juniper-Nsp; [EMAIL PROTECTED] Subject: Re: [j-nsp] SecurID netscreen

Re: [j-nsp] SecurID netscreen problem

2008-07-21 Thread sunnyday
uant [mailto:[EMAIL PROTECTED] Sent: Monday, July 21, 2008 5:11 PM To: sunnyday; Juniper-Nsp; [EMAIL PROTECTED] Subject: Re: [j-nsp] SecurID netscreen problem If I recall correctly, you are using Xauth. As I mentioned in a previous post, ScreenOS does not support the assignment of remote setting

[j-nsp] SecurID netscreen problem

2008-07-20 Thread sunnyday
I have set up a vpn to authenticate to an external SecureID server the authentication requests reach the server and authentication is successful as I can see through the logs of the SecureID server But my problem is that the dialup vpn client is unable to get an ip address. How it possible to give

Re: [j-nsp] Vpn with rsa

2008-07-17 Thread sunnyday
policy of the vpn "Untrust to Trust" "authentication" the rsa server and got nothing. I would really appreciated if you help me out here. -Original Message- From: Stefan Fouant [mailto:[EMAIL PROTECTED] Sent: Wednesday, July 16, 2008 5:38 PM To: sunnyday Cc: Juniper-

Re: [j-nsp] Vpn with rsa

2008-07-16 Thread sunnyday
, 2008 5:17 PM To: sunnyday Cc: Juniper-Nsp; [EMAIL PROTECTED] Subject: Re: [j-nsp] Vpn with rsa For dial-up VPN applications, you can configure an Auth or L2TP user and authenticate them against the SecurID database. I would recommend configuring an Auth user as the SecurID cannot assign remote

[j-nsp] Vpn with rsa

2008-07-16 Thread sunnyday
I need to configure (if possible ) a vpn with rsa authentication.i have some tokens which generate the tokens codes and have setup the securID server. I already have a IPSEC vpn. I need to know what steps to take to use rsa tokens to authenticate when requesting access to the vpn. Any help apprec

[j-nsp] Jncis-fw

2008-07-10 Thread sunnyday
Hello anyone knows any material to read for the jncis-fw certification? ___ juniper-nsp mailing list juniper-nsp@puck.nether.net https://puck.nether.net/mailman/listinfo/juniper-nsp

[j-nsp] Mlppp J series

2008-07-09 Thread sunnyday
Hello any one knows or has any config on how to configure Mlppp on J series with two adsl pics? Juniper documentation is a little bit confusing. Thank you ___ juniper-nsp mailing list juniper-nsp@puck.nether.net https://puck.nether.net/mailman/lis

[j-nsp] Bulk stats

2008-06-30 Thread sunnyday
Hello I need a general idea on bulkstats and what information can I get. I can get only interface stats? From the doc I have a numerous of interfaces but when trying to configure I have only a few. Thank you ___ juniper-nsp mailing list juniper-nsp@pu

Re: [j-nsp] (no subject)

2008-06-24 Thread sunnyday
That means there`s not a way to view the output of the command: Show egress-queue rates interface gigabitEthernet x/x/x through SNMP? -Original Message- From: Jonathan Crawford [mailto:[EMAIL PROTECTED] Sent: Tuesday, June 24, 2008 12:10 PM To: sunnyday; juniper-nsp@puck.nether.net

Re: [j-nsp] (no subject)

2008-06-24 Thread sunnyday
not found: (top) -> ifOutOctets) C:\Documents and Settings\jet\Desktop\SNMPWALK_OCT31> -Original Message- From: Boyd, Benjamin R [mailto:[EMAIL PROTECTED] Sent: Monday, June 23, 2008 5:20 PM To: sunnyday; juniper-nsp@puck.nether.net Subject: RE: [j-nsp] (no subject) Sun

[j-nsp] (no subject)

2008-06-23 Thread sunnyday
Hello anyone knows the OID or how can I view the output of the command: Show egress-queue rates interface gigabitEthernet x/x/x Via SNMP? Thank you ___ juniper-nsp mailing list juniper-nsp@puck.nether.net https://puck.nether.net/mai

Re: [j-nsp] Copying *.rel files from ERX to FTP Server

2008-06-23 Thread sunnyday
copy disk0:e320_8-2-3.rel ftpname:/e320_8-2-3.rel -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of H. Zhang Sent: Monday, June 23, 2008 10:29 AM To: Amr; juniper-nsp@puck.nether.net Subject: Re: [j-nsp] Copying *.rel files from ERX to FTP Server the box

[j-nsp] MPLS LDP

2008-06-03 Thread sunnyday
Hello I have configured mpls ldp in my network and I want all ip traffic to go through mpls. I have issued the command mpls ldp ip-forwarding but the traffic seems to go through isis when I trace route to an ip I see no label assignment. After that I have issued the mpls ldp ip-forwarding hosts-

[j-nsp] EXTENDED LICENSE UPGRADE KEY FOR SSG 5

2008-06-03 Thread sunnyday
Knows what the "EXTENDED LICENSE UPGRADE KEY FOR SSG 5" or Juniper Software License SSG-5-ELU contains? Thank you ___ juniper-nsp mailing list juniper-nsp@puck.nether.net https://puck.nether.net/mailman/listinfo/juniper-nsp

[j-nsp] limit upload ssg

2008-05-28 Thread sunnyday
Hello I have a ssg in my office with 10 PCs and I have configured for every pc a policy with the maximum and guaranteed bandwidth. I want to know if there is a way to control the upload speed since every user has the whole upload speed when running torrents and other applications. Thank you

[j-nsp] (no subject)

2008-05-28 Thread sunnyday
Hello I have a ssg in my office with 10 PCs and I have configured for every pc a policy with the maximum and guaranteed bandwidth. I want to know if there is a way to control the upload speed since every user has the whole upload speed when running torrents and other applications. Thank you __

Re: [j-nsp] Netscreen vpn

2008-05-17 Thread sunnyday
And another question how can I tell to which zone the tunnel interface is bound? -Original Message- From: Stefan Fouant [mailto:[EMAIL PROTECTED] Sent: Saturday, May 17, 2008 6:58 PM To: sunnyday Cc: Juniper-Nsp; [EMAIL PROTECTED] Subject: Re: [j-nsp] Netscreen vpn There is just not

Re: [j-nsp] Netscreen vpn

2008-05-17 Thread sunnyday
- From: Stefan Fouant [mailto:[EMAIL PROTECTED] Sent: Saturday, May 17, 2008 6:58 PM To: sunnyday Cc: Juniper-Nsp; [EMAIL PROTECTED] Subject: Re: [j-nsp] Netscreen vpn There is just not enough information supplied to determine the problem. Is the tunnel interface bound to the Trust zone, or the

[j-nsp] Netscreen vpn

2008-05-17 Thread sunnyday
Hello I have configured a dialup vpn and successfully created the tunnel and received ip address but I cannot manage to ping the netscreen`s Trust interface. The ip address the vpn has is 10.250.250.1 and the trust interface is 192.168.10.1. I tried with static routes and policies With no r

[j-nsp] Netscreen RSA

2008-05-12 Thread sunnyday
I would very much appreciate if anyone could give me a config guide or sample on how to configure rsa on ssg. Thank you ___ juniper-nsp mailing list juniper-nsp@puck.nether.net https://puck.nether.net/mailman/listinfo/juniper-nsp

[j-nsp] access-internal

2008-03-31 Thread sunnyday
Hello i have a subscriber in a vrf but his ip is not shown in the routing table as access-internal route why is that? alla other susbscribers in another vr work fine. ___ juniper-nsp mailing list juniper-nsp@puck.nether.net https://puck.nether.net/mailma

[j-nsp] /31 subnet mask

2008-03-22 Thread sunnyday
hello can any one explain the use of a /31 subnet mask i know its for saving ip addresses etc etc but i need to know how it works,limitations and how to implement it. thank you ___ juniper-nsp mailing list juniper-nsp@puck.nether.net https://puck.nether

[j-nsp] (no subject)

2008-03-13 Thread sunnyday
hello i have configured a lag interface and assigned a qos profile when the show egress-queue rates interface command is issued the output is this ip lag .1best-effort 0 0 25000 tc-x4183208 0 12288000

[j-nsp] pic/fpc

2008-03-11 Thread sunnyday
hello i want to use for a m320 -1 10gig Ethernet - 5 GE - 4 STM4 - 8 STM1 can anyone tell me the FPCs tha are compatible? ___ juniper-nsp mailing list juniper-nsp@puck.nether.net https://puck.nether.net/mailman/listinfo/juniper-nsp

[j-nsp] (no subject)

2008-03-08 Thread sunnyday
hello i want to know if Mlppp is supported on j series and if so a guide on how to configure it? Thanks ___ juniper-nsp mailing list juniper-nsp@puck.nether.net https://puck.nether.net/mailman/listinfo/juniper-nsp

[j-nsp] Ping

2008-03-07 Thread sunnyday
Hello i tried to ping from an E320 to another router and i got the ouput LLL anyone know what it means?? ___ juniper-nsp mailing list juniper-nsp@puck.nether.net https://puck.nether.net/mailman/listinfo/juniper-nsp

[j-nsp] Fw: AAA

2008-03-04 Thread sunnyday
Hello i have a E320 and i use radius as authentication. i have one VR and 4 VRFs the thing i want to do is when radius becomes unavailable the users to log to the bras without authentication is this possible. any ideas ___ juniper-nsp mailing

[j-nsp] AAA

2008-03-03 Thread sunnyday
Hello i have a E320 and i use radius as authentication. i have one VR and 4 VRFs the thing i want to do is when radius becomes unavailable the users to log to the bras without authentication but i am confused to which VR this is supposed to be configured. any ideas __

[j-nsp] Firewalls

2008-02-29 Thread sunnyday
Hello i have an ssg with no adsl modules just ethernet and 3 adsl lines the three cpe's connect to a switch as the ssg the thing i want to do is make the isg a dhcp server mac based and give as dns its self to the clients.is it possible for the ssg to resolve the dns of each cpe? and how will i

[j-nsp] E320 IOA

2008-02-27 Thread sunnyday
Hello i have installed a line module and the proper ioa which is a half-height the thing is that when i installed it on the bottom with nothing on top it was in inactive state.but when i installed it on top it was online. Anyone knows why is this happening??? __

[j-nsp] PPTP with juniper firewall

2008-02-21 Thread sunnyday
hello i want to know if any of juniper firewalls support PPTP termination ___ juniper-nsp mailing list juniper-nsp@puck.nether.net https://puck.nether.net/mailman/listinfo/juniper-nsp

[j-nsp] (no subject)

2008-02-04 Thread sunnyday
Hello I have a cisco router and im adapting the access lists of the box to E320 but i got stuck at these two commands anyone can help me with these cause i can find the appropriate commands thanks. access-list 2100 permit ip any any log fragments access-list 2100 permit tcp any any established lo

Re: [j-nsp] (no subject)

2008-02-04 Thread sunnyday
you must have misunderstood me the os is JUNOSe - Original Message - From: "Peder Bach" <[EMAIL PROTECTED]> To: "sunnyday" <[EMAIL PROTECTED]> Cc: "Juniper-Nsp" Sent: Monday, February 04, 2008 5:25 PM Subject: Re: [j-nsp] (no subject) > fir

[j-nsp] (no subject)

2008-02-04 Thread sunnyday
Hello i want to convert a cisco command on junose access-list 2000 permit tcp any any established log i can seem to find the established option in classifier-list conf ___ juniper-nsp mailing list juniper-nsp@puck.nether.net https://puck.nether.net/ma

[j-nsp] Ip share interface

2008-01-29 Thread sunnyday
hello i have a question regarding giving vpn access to the internet i have seen one way to do it is via a shared ip interface. host1(config)#virtual-router pe1:pe11host1:pe1:pe11(config)#interface ip internethost1:pe1:pe11(config-if)#ip share-interface gig 2/2.10host1:pe1:pe11(config-if)#ip addr

[j-nsp] Telnet e320

2008-01-28 Thread sunnyday
hello i want to know if i can telnet to a virtual router configured on the box since the only way i do it now is through the default virtual router, is this possible? thanks in advance ___ juniper-nsp mailing list juniper-nsp@puck.nether.net https://puc

[j-nsp] Redundacy

2008-01-18 Thread sunnyday
Hello all I want to configure two interfaces facing the subscribers with the link selection primary and link selection secondary commands and i want to know the behavior of this and how can i use it i want as it semms if 2/6 fails 2/7 to terminate ppp but if both are up what will happen? isnt

[j-nsp] (no subject)

2008-01-04 Thread sunnyday
when using 40gbps swith fabric how much full duplex bandwidth is available to each slot? Can anyone tell me how this is determined? ___ juniper-nsp mailing list juniper-nsp@puck.nether.net https://puck.nether.net/mailman/listinfo/juniper-nsp

[j-nsp] Configuration

2008-01-03 Thread sunnyday
Hello How can i send to a j series or m series a configuration file so i can commit it and use it and in what format should it be? ___ juniper-nsp mailing list juniper-nsp@puck.nether.net https://puck.nether.net/mailman/listinfo/juniper-nsp

Re: [j-nsp] m320

2007-12-20 Thread sunnyday
my question was about load balancing because i read that at internet processor 2 is per flow an plain internet processor is random - Original Message - From: "Richard A Steenbergen" <[EMAIL PROTECTED]> To: "sunnyday" <[EMAIL PROTECTED]> Cc: "Juni

[j-nsp] m320

2007-12-20 Thread sunnyday
m320 is using internet processor II or plain internet processor? ___ juniper-nsp mailing list juniper-nsp@puck.nether.net https://puck.nether.net/mailman/listinfo/juniper-nsp

[j-nsp] delete configuration

2007-12-20 Thread sunnyday
how can i can use the command delete | except on m series from top of the configuration deleting everything except some element for example a certain interface Cheers ___ juniper-nsp mailing list juniper-nsp@puck.nether.net https://puck.nether.net/

  1   2   >