after successful format of SRX 100
Interfaces
fe-0/0/0 - internet 122...../22 zone - internet
fe-0/0/1 - internal 192.168.1.1/24 zone - internal
First we need to add IP address and access group from address book
security - policy element - address book
address - add
need to create LAN range
here I create ssh access IP and group
address sets - add
need to modify policy
security - policy - apply policy
add or edit policy like as follows
modify internal zone inbound traffic protocol and service
security - zones/screens
NAT-destination NAT -destination rule set -add
inbound for ISP line
and add rules the them
Interfaces
fe-0/0/0 - internet 122...../22 zone - internet
fe-0/0/1 - internal 192.168.1.1/24 zone - internal
First we need to add IP address and access group from address book
security - policy element - address book
address - add
need to create LAN range
here I create ssh access IP and group
address sets - add
need to modify policy
security - policy - apply policy
add or edit policy like as follows
modify internal zone inbound traffic protocol and service
security - zones/screens
add destination NAT pool
NAT-destination NAT - destination NAT pool
NAT-destination NAT -destination rule set -add
inbound for ISP line
-------------------------------------------------------------------------------
If you have number of static IP serious then should have to mention the IP serious in proxy
Configure - Nat - proxy
--------------------------------------------------------------------------
0 Comments