/* * S2J Version: -1.0 / 20/06/2016 * Parse Date: Mon Jun 20 04:03:44 PDT 2016 * Error Lines: 311 * Warning Lines: 3 * Information Lines: 8 * Generated from ScreenOS config file: SSG-520M.txt * * NOTE: This config is NOT PERFECT. It must be carefully * examined to ensure correctness. Use of 'commit * confirmed' is recommended. See FAQ in S2J Home. * * SUPPORT: Contact us at s2j-support@juniper.net for * conversion tool issues and provide feedback to * improve the tool. For questions and assistance * regarding your specific configuration conversion * needs, please contact our professional services * team at coe-s2j@juniper.net */ system { authentication-order password; host-name NIGCHFW01; time-zone GMT; login { user netscreen { class super-user; /* Password=49SdxAu5qi75E5Bc Password(s) must be changed before commit */ authentication { plain-text-password-value "49SdxAu5qi75E5Bc"; } } } /* Password=73f509B9YH99NtAY Password(s) must be changed before commit */ root-authentication { plain-text-password-value "73f509B9YH99NtAY"; } ntp { server "172.16.2.12" prefer; server "0.0.0.0"; } services { ssh { protocol-version v2; } } } routing-instances { untrust-vr { instance-type virtual-router; } siteinfra-vr { instance-type virtual-router; routing-options { auto-export { disable; } static { route 0.0.0.0/0 { next-table untrust-vr.inet.0; preference 20; } } } } SS7_CH-vr { instance-type virtual-router; routing-options { auto-export { disable; } } } OM-vr { instance-type virtual-router; routing-options { auto-export { disable; } } } } chassis { cluster { redundancy-group -1 { interface-monitor ge-0/0/0 { weight 0; } } } } interfaces { ge-0/0/0 { link-mode full-duplex; speed 100m; unit 0 { family inet; } } ge-0/0/1 { unit 0 { family inet { address 192.168.16.254; } } } ge-0/0/2 { unit 0 { family inet; } } } routing-options { auto-export { disable; } static { route 192.168.15.216/29 { next-hop 192.168.15.163; } route 192.168.15.224/29 { next-hop 192.168.15.163; } route 192.168.15.200/29 { next-hop 192.168.15.163; } route 10.50.21.1/32 { next-hop 192.168.15.163; } route 10.50.21.65/32 { next-hop 192.168.15.163; } route 10.50.21.144/28 { next-hop 192.168.15.163; } route 10.50.21.136/29 { next-hop 192.168.15.163; } route 192.168.2.0/24 { next-hop 192.168.2.126; } route 192.168.16.40/29 { next-hop 192.168.15.163; } route 10.130.10.0/24 { next-hop 192.168.15.163; } route 10.130.11.0/24 { next-hop 192.168.15.162; } route 10.50.22.138/32 { next-hop 192.168.15.163; } route 10.50.22.170/32 { next-hop 192.168.15.163; } route 10.50.22.137/32 { next-hop 192.168.15.163; } route 10.50.22.169/32 { next-hop 192.168.15.163; } route 10.50.21.2/32 { next-hop 192.168.15.163; } route 10.50.21.66/32 { next-hop 192.168.15.163; } route 10.50.21.168/32 { next-hop 192.168.15.163; } route 10.50.21.160/32 { next-hop 192.168.15.163; } route 10.50.22.129/32 { next-hop 192.168.15.163; } route 10.50.22.130/32 { next-hop 192.168.15.163; } route 10.50.22.131/32 { next-hop 192.168.15.163; } route 10.50.22.132/32 { next-hop 192.168.15.163; } route 10.50.22.161/32 { next-hop 192.168.15.163; } route 10.50.22.162/32 { next-hop 192.168.15.163; } route 10.50.22.163/32 { next-hop 192.168.15.163; } route 10.50.22.164/32 { next-hop 192.168.15.163; } route 10.50.21.3/32 { next-hop 192.168.15.163; } route 10.50.21.67/32 { next-hop 192.168.15.163; } route 10.50.21.200/32 { next-hop 192.168.15.163; } route 10.50.21.192/32 { next-hop 192.168.15.163; } route 10.50.22.133/32 { next-hop 192.168.15.163; } route 10.50.22.134/32 { next-hop 192.168.15.163; } route 10.50.22.135/32 { next-hop 192.168.15.163; } route 10.50.22.136/32 { next-hop 192.168.15.163; } route 10.50.22.165/32 { next-hop 192.168.15.163; } route 10.50.22.166/32 { next-hop 192.168.15.163; } route 10.50.22.167/32 { next-hop 192.168.15.163; } route 10.50.22.168/32 { next-hop 192.168.15.163; } route 10.50.21.176/28 { next-hop 192.168.15.163; } route 10.50.21.208/28 { next-hop 192.168.15.163; } route 10.55.64.0/28 { next-hop 10.55.64.99; } route 10.56.64.0/28 { next-hop 10.55.64.99; } route 0.0.0.0/0 { next-table untrust-vr.inet.0; preference 20; } route 192.168.6.0/24 { next-hop 192.168.16.253; } route 192.168.7.0/24 { next-hop 192.168.16.253; } route 192.168.8.0/24 { next-hop 192.168.16.253; } route 192.168.9.0/24 { next-hop 192.168.16.253; } route 192.168.10.0/24 { next-hop 192.168.16.253; } route 192.168.11.0/24 { next-hop 192.168.16.253; } route 192.168.12.0/24 { next-hop 192.168.16.253; } route 192.168.13.0/24 { next-hop 192.168.16.253; } route 192.168.14.0/24 { next-hop 192.168.16.253; } route 193.220.181.186/32 { next-hop 192.168.16.253; } route 192.168.4.0/24 { next-hop 192.168.16.253; } route 172.16.2.240/32 { next-hop 192.168.16.253; } route 172.16.2.128/27 { next-hop 192.168.16.253; } route 172.16.2.12/32 { next-hop 192.168.16.253; } route 192.168.3.0/24 { next-hop 192.168.16.253; } route 82.201.195.248/32 { next-hop 192.168.16.253; } route 80.246.3.10/32 { next-hop 192.168.16.253; } route 67.210.160.242/32 { next-hop 192.168.16.253; } route 217.52.30.49/32 { next-hop 192.168.16.253; } route 192.168.5.15/32 { next-hop 192.168.16.253; } route 10.49.4.0/24 { next-hop 192.168.16.253; } route 192.168.40.0/30 { next-hop 192.168.16.253; } route 192.168.4.249/32 { next-hop 192.168.16.253; } route 10.49.6.0/24 { next-hop 192.168.16.253; } route 10.49.9.0/24 { next-hop 192.168.16.253; } route 10.49.7.0/24 { next-hop 192.168.16.253; } route 10.49.8.0/24 { next-hop 192.168.16.253; } route 10.177.16.0/24 { next-hop 192.168.16.253; } route 172.20.1.0/24 { next-hop 192.168.16.253; } route 10.48.2.0/24 { next-hop 192.168.16.253; } route 10.48.5.0/24 { next-hop 192.168.16.253; } route 10.48.1.0/24 { next-hop 192.168.16.253; } route 10.49.253.0/24 { next-hop 192.168.16.253; } route 10.48.0.0/16 { next-hop 192.168.16.253; } route 10.20.10.0/24 { next-hop 192.168.16.253; } route 10.49.10.0/24 { next-hop 192.168.16.253; } route 10.48.3.0/24 { next-hop 192.168.16.253; } route 10.48.14.0/24 { next-hop 192.168.16.253; } route 10.48.20.0/24 { next-hop 192.168.16.253; } route 10.48.11.30/32 { next-hop 192.168.16.253; } route 41.191.68.65/32 { next-hop 192.168.16.253; } route 10.49.10.21/32 { next-hop 192.168.16.253; } route 10.49.10.23/32 { next-hop 192.168.16.253; } route 172.25.1.16/29 { next-hop 192.168.16.253; } route 10.48.18.0/24 { next-hop 192.168.16.253; } route 10.48.11.200/32 { next-hop 192.168.16.253; } route 10.48.11.209/32 { next-hop 192.168.16.253; } route 10.48.11.39/32 { next-hop 192.168.16.253; } route 10.49.10.19/32 { next-hop 192.168.16.253; } route 192.168.100.5/32 { next-hop 192.168.16.253; } route 10.172.11.17/32 { next-hop 192.168.16.253; } route 10.172.10.17/32 { next-hop 192.168.16.253; } route 41.212.101.127/32 { next-hop 192.168.16.253; } route 10.49.3.32/27 { next-hop 192.168.16.253; } route 10.50.12.2/32 { next-hop 192.168.16.253; } route 10.50.12.3/32 { next-hop 192.168.16.253; } route 10.50.12.20/32 { next-hop 192.168.16.253; } route 10.0.128.1/32 { next-hop 192.168.16.253; } route 10.48.11.0/24 { next-hop 192.168.16.253; } route 10.50.10.3/32 { next-hop 192.168.16.253; } route 10.172.49.0/28 { next-hop 192.168.16.253; } route 10.172.34.16/30 { next-hop 192.168.16.253; } route 10.172.34.12/30 { next-hop 192.168.16.253; } route 10.50.24.98/32 { next-hop 192.168.16.253; } route 10.48.22.0/24 { next-hop 192.168.13.1; } route 10.18.38.0/24 { next-hop 192.168.16.253; } route 10.82.22.0/24 { next-hop 192.168.16.253; } route 10.18.63.0/24 { next-hop 192.168.16.253; } route 10.86.0.0/24 { next-hop 192.168.16.253; } route 172.18.5.0/24 { next-hop 192.168.16.253; } route 10.35.8.0/28 { next-hop 192.168.16.253; } route 10.35.7.0/24 { next-hop 192.168.16.253; } route 203.194.142.37/32 { next-hop 192.168.13.1; } route 10.41.0.0/24 { next-hop 192.168.16.253; } route 10.48.6.0/24 { next-hop 192.168.16.253; } route 10.48.7.0/24 { next-hop 192.168.16.253; } route 10.48.23.0/24 { next-hop 192.168.16.253; } route 10.48.11.215/32 { next-hop 192.168.16.253; } route 10.49.13.0/24 { next-hop 192.168.16.253; } route 10.170.53.15/32 { next-hop 192.168.16.253; } route 10.48.17.0/24 { next-hop 192.168.16.253; } route 10.49.14.0/24 { next-hop 192.168.16.253; } route 10.48.21.0/24 { next-hop 192.168.16.253; } route 10.48.8.0/24 { next-hop 192.168.16.253; } route 10.50.24.0/24 { next-hop 192.168.16.253; } route 10.55.4.16/28 { next-hop 10.55.5.213; } route 10.50.20.0/22 { next-hop 10.50.22.236; } route 10.55.48.176/30 { next-hop 10.55.48.186; } route 10.55.48.180/30 { next-hop 10.55.48.187; } } } security { ike { respond-bad-spi 1; } nat { proxy-arp { interface ge-0/0/1.0 { address { 10.48.11.200/32; 10.48.11.39/32; 172.16.2.240/32; 10.50.12.2/32; 10.50.12.3/32; 10.50.12.20/32; 192.168.6.0/24; 10.48.2.0/24; 10.48.3.0/24; 10.48.8.0/24; 10.49.13.0/24; 10.49.14.0/24; 10.49.9.0/24; 10.49.8.0/24; 10.48.6.0/24; 10.49.6.0/24; 10.48.7.0/24; 10.48.23.0/24; 10.49.7.0/24; 10.0.128.1/32; 172.20.1.0/24; 192.168.14.0/24; 10.49.10.23/32; 172.16.2.128/27; 192.168.8.0/24; 192.168.7.0/24; 10.48.1.0/24; 10.49.4.0/24; 10.48.5.0/24; 10.48.11.209/32; 172.18.5.0/24; 192.168.10.0/24; 10.49.10.21/32; 192.168.40.0/30; 10.48.11.215/32; 10.49.10.19/32; 10.177.16.0/24; 10.48.22.0/24; 41.212.101.127/32; 10.170.53.15/32; 10.172.34.12/30; 10.35.8.0/28; 10.172.34.16/30; 10.172.11.17/32; 10.172.10.17/32; 192.168.100.5/32; 10.41.0.0/24; 10.18.63.0/24; 10.48.20.0/24; 192.168.11.0/24; 172.16.2.12/32; 10.48.14.0/24; 10.50.24.98/32; 41.191.68.65/32; 10.48.17.0/24; 10.20.10.0/24; 192.168.4.249/32; 10.48.21.0/24; 10.48.11.30/32; 192.168.13.0/24; 10.172.49.0/28; 193.220.181.186/32; 192.168.5.15/32; 10.50.10.3/32; 80.246.3.10/32; 67.210.160.242/32; 82.201.195.248/32; 217.52.30.49/32; 203.194.142.37/32; 192.168.9.0/24; 192.168.12.0/24; 10.49.3.32/27; } } } } screen { ids-option Untrust_screen { icmp { ping-death; } ip { source-route-option; tear-drop; } tcp { land; /* Using default value for timeout since not within range 0-50 */ syn-flood { timeout 20; } } } ids-option V1-Untrust_screen { tcp { /* Using default value for timeout since not within range 0-50 */ syn-flood { timeout 20; } } } } zones { security-zone Trust { tcp-rst; } security-zone Untrust { screen Untrust_screen; } security-zone DMZ { tcp-rst; } security-zone CN_OM-sz { tcp-rst; address-book { address CHAR 182.168.16.48/29; } } security-zone CH_OM-sz { tcp-rst; address-book { address 10.48.11.200/32 10.48.11.200/32; address 10.48.11.39 10.48.11.39/32; address 172.16.2.240/32 172.16.2.240/32; address ACS01A 10.50.12.2/32; address ACS01B 10.50.12.3/32; address ACSTEST 10.50.12.20/32; address ACSvirtual 10.50.12.4/32; address Admin_Network 192.168.6.0/24; address admin_nw2 10.48.2.0/24; address admin_nw3 10.48.3.0/24; address AGENCE_GADAFAWA 10.48.8.0/24; address AGENCE_KONNI 10.49.13.0/24; address AGENCE_TILLABERY 10.49.14.0/24; address AGENCE_AGADEZ 10.49.9.0/24; address AGENCE_MARADI 10.49.8.0/24; address AGENCE_SIEGE 10.48.6.0/24; address AGENCE_TAHOUA 10.49.6.0/24; address AGENCE_TERRAIN_MUSUL1 10.48.7.0/24; address AGENCE_TERRAIN_MUSUL2 10.48.23.0/24; address AGENCE_ZINDER 10.49.7.0/24; address AIRTIME_IP 10.0.128.1/32; address ANNEXE_NW 10.48.0.0/24; address APN_STAFF 172.20.1.0/24; address BILLING 192.168.6.44/32; address BILLING_11 10.48.11.44/32; address Billing_Network 192.168.14.0/24; address BILLS_SERVER 10.48.11.38/32; address CARES 10.49.10.23/32; address CARES_1 10.49.10.23/32; address CARES_2 10.49.10.27/32; address CARES-Test 10.49.10.24/32; address Cares-virtuel 10.49.10.26/32; address CGSN_Gom_vips 172.16.2.128/27; address CONVIVA 10.48.14.21/32; address Core_Network 192.168.8.0/24; address CRBT_NODE1 10.48.14.21/32; address CRBT_NODE2 10.48.14.22/32; address CRBT_NODE3 10.48.14.23/32; address CRBT_NODE4 10.48.14.24/32; address Cust_Care_Network 192.168.7.0/24; address Customer_LAN_4 10.48.1.0/24; address DCM_INTEC 10.49.4.0/24; address DCM_NETWORK 10.48.5.0/24; address DNS1-DSI 10.48.11.209/32; address DNS2-DSI 10.48.11.200/32; address ERICSSON_MSDP 172.18.5.0/24; address Ericsson_Network 192.168.10.0/24; address ERP 10.49.10.21/32; address FLOOZ_TEST 10.48.11.52/32; address FW_ASA 192.168.40.0/30; address Globitel 10.48.19.4/32; address GPTO_STAT 192.168.4.46/32; address GPTO_STAT2 192.168.6.46/32; address hlr 192.168.8.5/32; address HLR_NA 192.168.8.15/32; address HLR_NB 192.168.8.14/32; address HLR_R13 192.168.8.16/32; address hlrA 192.168.8.3/32; address hlrB 192.168.8.4/32; address Identification 10.48.11.39/32; address identification_test 10.48.11.215/32; address IME_BCK 10.49.10.19/32; address INTEC_MEDIATION 10.49.10.18/32; address INTEC_MEDIATION2 10.48.11.40/32; address intec_nikira 10.177.16.0/24; address IntMaourey 10.48.22.0/24; address IP_PUB_AIR_TMP 41.212.101.127/32; address LMS 10.177.32.52/32; address LMS-V1 10.177.32.51/32; address LMS-V2 10.177.32.50/32; address LMS-V3 10.170.53.15/32; address MGW1_MOOVBJ 10.18.38.5/32; address MGW1_MOOVIC 10.172.34.12/30; address MGW1_MOOVTG 10.82.22.2/32; address MGW2_MOOVBJ 10.18.38.6/32; address MGW2_MOOVTG 10.82.22.3/32; address MGWs_BJ 10.18.38.0/29; address MGWs_MOOVGA 10.35.8.0/28; address MGWs_MOOVIC 10.172.34.16/30; address MIEP1 10.172.11.17/32; address MIEP2 10.172.10.17/32; address MMG 10.177.32.111/32; address MMG2 10.177.32.105/32; address MOBILERA_SERVER 192.168.100.5/32; address monitoring 10.48.11.82/32; address MSC2_TG 10.86.0.168/29; address Msc_MOOVGA1 10.35.7.2/32; address Msc_MOOVGA2 10.35.7.66/32; address MSC_TG 10.86.0.160/29; address MSCs_MOOVGA_NEW 10.41.0.0/24; address MSS1_MOOVTG 10.86.0.162/32; address MSS2_MOOVTG 10.86.0.163/32; address MSS3_MOOVTG 10.86.0.170/32; address MSS4_MOOVTG 10.86.0.171/32; address MSS_MOOVBJ 10.18.63.0/24; address NEW_CALL-CENTER 10.48.20.0/24; address New_BI 10.48.11.54/32; address NewBBSrv 10.48.11.80/32; address NOC_Network 192.168.11.0/24; address NSS_NW 192.168.8.0/24; address NTP_SVR 172.16.2.12/32; address OAM_PPS1 172.25.1.17/32; address OAM_PPS2 172.25.1.18/32; address OPENCODE 10.48.14.0/24; address opencode1 10.48.18.106/32; address opencode2 10.48.18.108/32; address OPENCODE_S1 10.48.18.106/32; address OPENCODE_S2 10.48.18.108/32; address OPENCODE_S3 10.48.18.111/32; address OPENCODE_S4 10.48.18.113/32; address OPENCODE_S5 10.48.18.110/32; address oss2 10.50.24.98/32; address OSS3 10.50.24.2/32; address OSS4 10.50.24.8/32; address PACKETFENCE 10.48.11.36/32; address Paie 10.48.11.28/32; address PEER-LMS 41.191.68.65/32; address PRESTIGE 10.177.32.0/24; address PROXYCOM 20.48.23.10/32; address QOS_INTERNATIONAL 10.49.10.21/32; address RDC 10.48.1.0/24; address REPORTING 192.168.6.41/32; address reseau_asa 192.168.40.0/30; address RESEAU_SAUVEGARDE 10.48.17.0/24; address ROUTEUR_CARES 10.49.253.24/32; address ROUTEUR_TELEPIN 10.20.10.0/24; address routeur_lan 192.168.4.249/32; address rsg 192.168.8.7/32; address SALLE_TECHNIQUE 10.48.21.0/24; address SAUVE-RESEAU 10.48.11.30/32; address SERVEUR_VAS_IT 10.48.11.95/32; address Service_Network 192.168.13.0/24; address SIG_MOOVIC 10.172.49.0/28; address SMSC 193.220.181.186/32; address smsc_2 192.168.5.15/32; address SMSC_NEW 10.50.10.3/32; address SRV-Gdigital 10.48.2.10/32; address Srv-TLC-App1 10.48.11.63/32; address Srv-TLC-App2 10.48.11.64/32; address Srv-TLC-App3 10.48.11.65/32; address SSG_Host 192.168.10.7/32; address support_sun 10.48.1.5/32; address SVA 192.168.6.143/32; address TELEPIN-Algeria 80.246.3.10/32; address TELEPIN-Canada 67.210.160.242/32; address TELEPIN-Egypt 82.201.195.248/32; address TELEPIN-Egypt2 217.52.30.49/32; address TILIA/SMS_FACEBOOK 203.194.142.37/32; address TLC-APP1 10.48.11.63/32; address TLC-APP2 10.48.11.64/32; address TLC-APP3 10.48.11.65/32; address TLC-TEST 10.48.11.52/32; address Transmission_Network 192.168.9.0/24; address VAS_SERVER 192.168.6.143/32; address VAS_Network 192.168.12.0/24; address VPNMiniagence 10.49.3.32/27; /* Original Group="AGENCES_INTERIEUR" */ address-set AGENCES_INTERIEUR { address AGENCE_KONNI; address AGENCE_TILLABERY; address AGENCE_AGADEZ; address AGENCE_MARADI; address AGENCE_TAHOUA; address AGENCE_ZINDER; } /* Original Group="AGENCES_NIAMEY" */ address-set AGENCES_NIAMEY { address AGENCE_GADAFAWA; address AGENCE_SIEGE; address AGENCE_TERRAIN_MUSUL1; address AGENCE_TERRAIN_MUSUL2; } /* Original Group="CRBT_RANGE" */ address-set CRBT_RANGE { address CRBT_NODE1; address CRBT_NODE2; address CRBT_NODE3; address CRBT_NODE4; } /* Original Group="hlrcluster" */ address-set hlrcluster { address hlr; address hlrA; address hlrB; } /* Original Group="INTEC" */ address-set INTEC { address INTEC_MEDIATION; address INTEC_MEDIATION2; } /* Original Group="MGWs_MOOVBJ" */ address-set MGWs_MOOVBJ { address MGW1_MOOVBJ; address MGW2_MOOVBJ; } /* Original Group="MGWs_MOOVTG" */ address-set MGWs_MOOVTG { address MGW1_MOOVTG; address MGW2_MOOVTG; } /* Original Group="Msc_MOOVGA" */ address-set Msc_MOOVGA { address Msc_MOOVGA1; address Msc_MOOVGA2; address MSCs_MOOVGA_NEW; } /* Original Group="MSSs_MOOVTG" */ address-set MSSs_MOOVTG { address MSS1_MOOVTG; address MSS2_MOOVTG; address MSS3_MOOVTG; address MSS4_MOOVTG; } /* Original Group="New_OSS" */ address-set New_OSS { address OSS3; address OSS4; } /* Original Group="OAM_PPS" */ address-set OAM_PPS { address OAM_PPS1; address OAM_PPS2; } /* Original Group="OPENCODE_S" */ address-set OPENCODE_S { address OPENCODE_S1; address OPENCODE_S2; address OPENCODE_S3; address OPENCODE_S4; } /* Original Group="oss_group" Member Definition for "oss" is missing or the member is not being converted. */ address-set oss_group { address oss2; } /* Original Group="OSS_NOC_Range" */ address-set OSS_NOC_Range { address Admin_Network; address hlr; address NOC_Network; address rsg; } /* Original Group="SMSC_IP" */ address-set SMSC_IP { address SMSC; address smsc_2; } /* Original Group="TELEPIN-Public" */ address-set TELEPIN-Public { address TELEPIN-Algeria; address TELEPIN-Canada; address TELEPIN-Egypt; address TELEPIN-Egypt2; } /* Original Group="TLC-SRV" */ address-set TLC-SRV { address Srv-TLC-App1; address Srv-TLC-App2; address Srv-TLC-App3; address TLC-TEST; } } interfaces { ge-0/0/1.0; } } security-zone SS7_CH_1-sz { tcp-rst; address-book { address SCTP_INT_1 10.50.22.0/26; address SS7_CCN_VIPs_1-Net 10.50.22.128/27; } } security-zone SS7_CH_2-sz { tcp-rst; address-book { address SCTP_INT_2 10.50.22.64/26; address SS7_CCN_VIPs_2-Net 10.50.22.160/27; } } security-zone SCTP_CH_1-sz { tcp-rst; address-book { address BC1_SIG 10.55.4.0/28; address BC1_SIG1 10.55.4.0/29; address CN-SS7_VIP 10.55.0.152/29; address CN_SS7_SGSN1_1 10.55.0.136/29; address CN_SS7_SGSN1_2 10.55.0.144/29; } } security-zone SCTP_CH_2-sz { tcp-rst; address-book { address BC1_SIG 10.55.4.0/28; address BC1_SIG2 10.55.4.8/29; address CN-SS7_VIP 10.55.0.152/29; address CN_SS7_SGSN1_1 10.55.0.136/29; address CN_SS7_SGSN1_2 10.55.0.144/29; } } security-zone OM_INT-sz { tcp-rst; address-book { address charging_network 10.50.20.0/22; } } security-zone OM_EXT-sz { tcp-rst; address-book { address CBC_NTP_1 10.55.48.176/30; address CBC_NTP_2 10.55.48.180/30; } } security-zone CH_Admin-sz { tcp-rst; address-book { address CCN.148 10.50.20.148/32; address CH_ADM 192.168.16.0/27; address CH_ADM_1 10.50.20.128/26; address CRS_BAIE 192.168.16.15/32; address CRS_SERVER 192.168.16.14/32; address HXC 192.168.15.120/32; address MINSAT 192.168.16.1/32; address MINSAT_CS5 10.50.20.129/32; } } security-zone CH_Access-sz { tcp-rst; address-book { address 10.50.21.65/32 10.50.21.65/32; address 192.168.142.192/27 192.168.142.192/27; address 192.168.142.224/29 192.168.142.224/29; address 192.168.142.232/29 192.168.142.232/29; address 192.168.142.240/29 192.168.142.240/29; address 192.168.15.1/32 192.168.15.1/32; address CCN_IO 192.168.15.200/29; address CCN_VIPs 192.168.16.40/30; address CCN2_IO 10.50.21.144/28; address CCN2_OAM_VIP 10.50.21.65/32; address CCN3_DIA_VIP 10.50.21.2/32; address CCN3_IO 10.50.21.176/28; address CCN3_OAM_VIP 10.50.21.66/32; address CCN4_DIA_VIP 10.50.21.3/32; address CCN4_IO 10.50.21.208/28; address CCN4_OAM_VIP 10.50.21.67/32; address CH_ACC 192.168.15.160/27; address CH_ACC_INT 192.168.16.32/30; address Core_SS7_l 10.130.10.0/24; address Core_SS7_r 10.130.11.0/24; address CSC_VIP 192.168.16.36/30; address EMA 192.168.15.180/32; address EMM 192.168.15.164/32; address NTP_2 192.168.15.186/32; address Online_Gateway 192.168.15.173/32; address PSL_FS 192.168.15.224/29; address PSL_IO 192.168.15.216/29; address PSL_Vips 192.168.16.44/30; address SVR_SQL 192.168.15.179/32; address TSP_1 172.16.0.0/24; address TSP_2 172.16.1.0/24; /* Original Group="Core_ss7_NiG" */ address-set Core_ss7_NiG { address Core_SS7_l; address Core_SS7_r; } } } security-zone CH_Internal-sz { tcp-rst; address-book { address 10.50.20.129/32 10.50.20.129/32; address 192.168.142.0/26 192.168.142.0/26; address 192.168.142.128/26 192.168.142.128/26; address 192.168.15.0/24 192.168.15.0/24; address AIR3 10.50.20.11/32; address AIR4 10.50.20.204/32; address CH_INT 192.168.15.64/26; address CH_INT_1 10.50.20.0/25; address CH_INT_IVR 192.168.15.0/27; address CS5 10.50.20.0/25; address FTP_BI 192.168.15.165/32; address LUVA_VIP3 192.168.15.65/32; address new-SDP1 10.50.20.1/32; address NEW-SDP2 10.50.20.2/32; address NIGEMA02_OM 10.50.22.208/28; address NIGEMA02_Traffic 10.50.22.192/28; address NTP_2 192.168.15.186/32; address SAE_Primary 192.168.15.120/32; address SDP2_VIP 10.50.20.3/32; address SDP3_VIP 10.50.20.6/32; address VS1A 10.50.20.7/32; address VS1B 10.50.20.9/32; /* Original Group="AIR" */ address-set AIR { address AIR3; address AIR4; } /* Original Group="SDP_VIP" Member Definition for "SDP VIP" is missing or the member is not being converted. */ address-set SDP_VIP { address SDP2_VIP; address SDP3_VIP; } } } security-zone TELEPIN { tcp-rst; address-book { address TELEPIN-NW 192.168.2.0/24; address TELEPIN_1 192.168.2.1/32; address TELEPIN_2 192.168.2.11/32; address TELEPIN_PROXY 192.168.2.85/32; } } security-zone CHAR_OM-sz { tcp-rst; address-book { address AIR_202 10.50.20.202/32; address AIR_2B 10.50.20.204/32; address AIR_TMP 10.50.20.202/32; address Charging_OM 10.50.20.192/26; } } security-zone MGW_TRAF-SZ { tcp-rst; address-book { address NeMGW_TRAF 10.50.28.0/28; address NEMSS1 10.130.10.5/32; address NEMSS2 10.130.11.5/32; /* Original Group="NEMSS_GROUP" */ address-set NEMSS_GROUP { address NEMSS1; address NEMSS2; } } } security-zone MGW_EXT-sz { tcp-rst; address-book { address Maradi_media_cn 10.56.64.0/28; address media_cn_1 10.55.64.0/28; } } security-zone Null { interfaces { ge-0/0/0.0; ge-0/0/2.0; } } security-zone V1-Trust; security-zone V1-Untrust { screen V1-Untrust_screen; } security-zone V1-DMZ; } policies { from-zone CH_Access-sz to-zone CH_Internal-sz { policy 2 { match { source-address 192.168.142.192/27; destination-address LUVA_VIPs; application [ junos-dns-tcp junos-dns-udp ]; } then { permit; } } policy 3 { match { source-address 192.168.142.224/29; destination-address LUVA_VIPs; application [ junos-dns-tcp junos-dns-udp ]; } then { permit; } } policy 4 { match { source-address 192.168.142.232/29; destination-address LUVA_VIPs; application [ junos-dns-tcp junos-dns-udp ]; } then { permit; } } policy 5 { match { source-address 192.168.142.240/29; destination-address LUVA_VIPs; application [ junos-dns-tcp junos-dns-udp ]; } then { permit; } } policy 14 { match { source-address any; destination-address any; application any; } then { permit; log { session-init; } } } } from-zone CH_Access-sz to-zone CH_Admin-sz { policy 17 { match { source-address any; destination-address any; application any; } then { permit; log { session-init; } } } policy 159 { match { source-address CH_ACC; destination-address CH_ADM_1; application any; } then { permit; log { session-init; } } } } from-zone CH_Internal-sz to-zone CH_Access-sz { policy 15 { match { source-address any; destination-address any; application any; } then { permit; } } } from-zone CN_OM-sz to-zone CH_Access-sz { policy 9 { match { source-address GGSN_OM_VIP; destination-address CCN_Diameter_VIP; application Diameter; } then { permit; } } } from-zone CH_OM-sz to-zone CH_Access-sz { policy 10 { match { source-address OSS_NOC_Range; destination-address any; application any; } then { permit; } } policy 283 { match { source-address ERICSSON_MSDP; destination-address any; application any; } then { permit; log { session-init; } } } policy 25 { match { source-address [ Admin_Network admin_nw2 admin_nw3 ANNEXE_NW ERICSSON_MSDP oss RDC SALLE_TECHNIQUE SSG_Host support_sun OAM_PPS ]; destination-address any; application any; } then { permit; log { session-init; } } } policy 32 { match { source-address hlrcluster; destination-address any; application [ ftp_20_21 junos-ping junos-telnet ]; } then { permit; log { session-init; } } } policy 33 { match { source-address BILLING; destination-address CH_ACC; application [ junos-ftp junos-ping junos-telnet ]; } then { permit; } } policy 91 { match { source-address ROUTEUR_CARES; destination-address EMA; application any; } then { permit; } } policy 95 { match { source-address CARES_1; destination-address EMA; application any; } then { permit; } } policy 96 { match { source-address CARES_2; destination-address EMA; application any; } then { permit; } } policy 97 { match { source-address CRBT_RANGE; destination-address EMA; application any; } then { permit; } } policy 98 { match { source-address CRBT_RANGE; destination-address EMM; application any; } then { permit; } } policy 116 { match { source-address SAUVE-RESEAU; destination-address CH_ACC; application any; } then { permit; log { session-init; } } } policy 132 { match { source-address opencode1; destination-address EMA; application any; } then { permit; } } policy 133 { match { source-address opencode2; destination-address EMA; application any; } then { permit; } } policy 134 { match { source-address OPENCODE_S3; destination-address EMA; application any; } then { permit; } } policy 135 { match { source-address OPENCODE_S4; destination-address EMA; application any; } then { permit; } } policy 139 { match { source-address [ PACKETFENCE RDC ]; destination-address CH_ACC; application any; } then { permit; log { session-init; } } } /* "Administration CCN" */ policy 140 { match { source-address [ PACKETFENCE RDC ]; destination-address CH_ACC; application any; } then { permit; log { session-init; } } } /* "Identification" */ policy 142 { match { source-address [ Identification identification_test ]; destination-address EMA; application any; } then { permit; log { session-init; } } } policy 170 { match { source-address INTEC_MEDIATION; destination-address any; application any; } then { permit; log { session-init; } } } policy 180 { match { source-address CARES-Test; destination-address EMA; application any; } then { permit; log { session-init; } } } policy 186 { match { source-address 10.48.11.200/32; destination-address CCN2_OAM_VIP; application [ junos-ftp junos-ssh ping_trace ]; } then { permit; log { session-init; } } } policy 227 { match { source-address SIG_MOOVIC; destination-address Core_SS7_l; application any; } then { permit; log { session-init; } } } policy 228 { match { source-address SIG_MOOVIC; destination-address Core_SS7_r; application any; } then { permit; log { session-init; } } } policy 229 { match { source-address SAUVE-RESEAU; destination-address Core_SS7_r; application any; } then { permit; log { session-init; } } } policy 230 { match { source-address SAUVE-RESEAU; destination-address Core_SS7_l; application any; } then { permit; log { session-init; } } } policy 239 { match { source-address oss_group; destination-address any; application any; } then { permit; log { session-init; } } } policy 276 { match { source-address MSS_MOOVBJ; destination-address [ Core_SS7_l Core_SS7_r ]; application any; } then { permit; log { session-init; } } } policy 280 { match { source-address [ MSC2_TG MSC_TG MSSs_MOOVTG ]; destination-address [ Core_SS7_l Core_SS7_r ]; application any; } then { permit; log { session-init; } } } policy 290 { match { source-address Msc_MOOVGA; destination-address Core_ss7_NiG; application any; } then { permit; log { session-init; } } } policy 293 { match { source-address NewBBSrv; destination-address EMA; application any; } then { permit; log { session-init; } } } policy 294 { match { source-address [ HLR_NA HLR_NB HLR_R13 ]; destination-address NTP_2; application any; } then { permit; log { session-init; } } } policy 301 { match { source-address New_OSS; destination-address EMA; application any; } then { permit; log { session-init; } } } policy 303 { match { source-address New_OSS; destination-address [ 10.50.21.65/32 CCN2_IO ]; application any; } then { permit; log { session-init; } } } inactive: policy 309 { match { source-address [ MSC2_TG MSC_TG MSS1_MOOVTG MSS2_MOOVTG MSS3_MOOVTG MSS4_MOOVTG MSSs_MOOVTG ]; destination-address [ Core_SS7_l Core_SS7_r ]; application any; } then { permit; log { session-init; } } } policy 316 { match { source-address SERVEUR_VAS_IT; destination-address EMA; application any; } then { permit; } } policy 323 { match { source-address SSG_Host; destination-address any; application any; } then { permit; } } policy 331 { match { source-address INTEC_MEDIATION2; destination-address any; application any; } then { permit; log { session-init; } } } } from-zone CH_Internal-sz to-zone CH_Admin-sz { policy 12 { match { source-address any; destination-address any; application any; } then { permit; } } policy 161 { match { source-address [ CH_INT CH_INT_1 CH_INT_IVR ]; destination-address [ CH_ADM CH_ADM_1 ]; application any; } then { permit; log { session-init; } } } } from-zone CH_Admin-sz to-zone CH_Internal-sz { policy 13 { match { source-address any; destination-address any; application any; } then { permit; } } policy 160 { match { source-address [ CH_ADM CH_ADM_1 ]; destination-address [ CH_INT CH_INT_1 CH_INT_IVR ]; application any; } then { permit; log { session-init; } } } } from-zone CH_Admin-sz to-zone CH_Access-sz { policy 16 { match { source-address any; destination-address any; application any; } then { permit; log { session-init; } } } policy 158 { match { source-address CH_ADM_1; destination-address CH_ACC; application any; } then { permit; log { session-init; } } } } from-zone CH_OM-sz to-zone CH_Internal-sz { policy 18 { match { source-address OSS_NOC_Range; destination-address any; application any; } then { permit; } } policy 27 { match { source-address [ Admin_Network admin_nw2 admin_nw3 ANNEXE_NW ERICSSON_MSDP oss RDC SALLE_TECHNIQUE SAUVE-RESEAU support_sun OAM_PPS ]; destination-address any; application any; } then { permit; log { session-init; } } } policy 35 { match { source-address SSG_Host; destination-address CH_INT_IVR; application any; } then { permit; } } policy 37 { match { source-address SSG_Host; destination-address CH_INT; application any; } then { permit; } } policy 44 { match { source-address Customer_LAN_4; destination-address SAE_Primary; application any; } then { permit; } } policy 60 { match { source-address smsc_2; destination-address SAE_Primary; application any; } then { permit; } } policy 65 { match { source-address DCM_INTEC; destination-address SAE_Primary; application any; } then { permit; log { session-init; } } } policy 68 { match { source-address NSS_NW; destination-address NTP_2; application any; } then { permit; log { session-init; } } } policy 84 { match { source-address ANNEXE_NW; destination-address SAE_Primary; application any; } then { permit; } } policy 99 { match { source-address CRBT_RANGE; destination-address [ AIR3 AIR4 ]; application any; } then { permit; } } policy 100 { match { source-address ANNEXE_NW; destination-address LUVA_VIPs; application any; } then { permit; } } policy 104 { match { source-address NEW_CALL-CENTER; destination-address SAE_Primary; application any; } then { permit; } } /* "OPENCODE1" */ policy 130 { match { source-address opencode1; destination-address LUVA_VIPs; application any; } then { permit; } } /* "OPENCODE2" */ policy 131 { match { source-address opencode2; destination-address LUVA_VIPs; application any; } then { permit; } } policy 136 { match { source-address PACKETFENCE; destination-address any; application any; } then { permit; log { session-init; } } } policy 155 { match { source-address [ NOC_Network hlrcluster SMSC_IP ]; destination-address CH_INT_1; application any; } then { permit; log { session-init; } } } /* "MOBILERA_SERVER" */ policy 163 { match { source-address MOBILERA_SERVER; destination-address LUVA_VIPs; application any; } then { permit; log { session-init; } } } policy 171 { match { source-address INTEC_MEDIATION; destination-address any; application any; } then { permit; } } /* "VS1" */ policy 177 { match { source-address ANNEXE_NW; destination-address [ VS1A VS1B ]; application any; } then { permit; log { session-init; } } } policy 178 { match { source-address [ IME_BCK INTEC_MEDIATION ]; destination-address [ AIR3 AIR4 new-SDP1 NEW-SDP2 ]; application any; } then { permit; log { session-init; } } } policy 183 { match { source-address [ CONVIVA OPENCODE_S1 OPENCODE_S2 OPENCODE_S5 ]; destination-address [ AIR3 AIR4 ]; application any; } then { permit; log { session-init; } } } policy 189 { match { source-address OSS_NOC_Range; destination-address any; application any; } then { permit; } } inactive: policy 194 { match { source-address rsg; destination-address CS5; application any; } then { permit; log { session-init; } } } /* "MOBILERA_SERVER" */ policy 195 { match { source-address MOBILERA_SERVER; destination-address AIR3; application any; } then { permit; log { session-init; } } } policy 196 { match { source-address SSG_Host; destination-address CS5; application any; } then { permit; log { session-init; } } } policy 197 { match { source-address SSG_Host; destination-address 10.50.20.129/32; application any; } then { permit; log { session-init; } } } policy 204 { match { source-address [ OPENCODE_S1 OPENCODE_S2 OPENCODE_S3 OPENCODE_S4 ]; destination-address [ new-SDP1 NEW-SDP2 ]; application any; } then { permit; log { session-init; } } } policy 205 { match { source-address [ ACS01A ACS01B ACSTEST ]; destination-address [ AIR3 AIR4 ]; application any; } then { permit; log { session-init; } } } policy 212 { match { source-address FLOOZ_TEST; destination-address AIR3; application any; } then { permit; log { session-init; } } } /* "TLC-AIR" */ policy 215 { match { source-address [ TLC-APP1 TLC-APP2 TLC-APP3 ]; destination-address [ AIR3 AIR4 ]; application any; } then { permit; log { session-init; } } } policy 222 { match { source-address SMSC_NEW; destination-address SAE_Primary; application any; } then { permit; log { session-init; } } } policy 241 { match { source-address oss_group; destination-address any; application any; } then { permit; } } policy 254 { match { source-address CRBT_NODE3; destination-address [ AIR3 AIR4 ]; application any; } then { permit; log { session-init; } } } policy 255 { match { source-address CRBT_NODE4; destination-address [ AIR3 AIR4 ]; application any; } then { permit; log { session-init; } } } policy 266 { match { source-address ANNEXE_NW; destination-address [ AIR3 AIR4 new-SDP1 NEW-SDP2 ]; application any; } then { permit; log { session-init; } } } policy 291 { match { source-address TILIA/SMS_FACEBOOK; destination-address AIR3; application any; } then { permit; log { session-init; } } } policy 295 { match { source-address New_OSS; destination-address [ AIR3 AIR4 ]; application any; } then { permit; log { session-init; } } } policy 296 { match { source-address New_OSS; destination-address [ new-SDP1 NEW-SDP2 SDP2_VIP SDP3_VIP ]; application any; } then { permit; log { session-init; } } } policy 300 { match { source-address New_OSS; destination-address [ VS1A VS1B ]; application any; } then { permit; log { session-init; } } } policy 305 { match { source-address New_OSS; destination-address CH_INT_1; application any; } then { permit; log { session-init; } } } policy 318 { match { source-address CRBT_NODE1; destination-address [ AIR3 AIR4 ]; application any; } then { permit; log { session-init; } } } policy 319 { match { source-address CRBT_NODE2; destination-address [ AIR3 AIR4 ]; application any; } then { permit; log { session-init; } } } policy 324 { match { source-address SSG_Host; destination-address any; application any; } then { permit; } } policy 326 { match { source-address INTEC_MEDIATION2; destination-address any; application any; } then { permit; } } policy 328 { match { source-address [ admin_nw2 oss oss2 OSS3 OSS4 SALLE_TECHNIQUE ]; destination-address NIGEMA02_OM; application any; } then { permit; } } policy 330 { match { source-address HLR_R13; destination-address NIGEMA02_Traffic; application any; } then { permit; } } policy 333 { match { source-address [ 10.48.11.39 CONVIVA NewBBSrv SERVEUR_VAS_IT OPENCODE_S ]; destination-address NIGEMA02_Traffic; application any; } then { permit; } } } from-zone CH_OM-sz to-zone CH_Admin-sz { policy 19 { match { source-address OSS_NOC_Range; destination-address any; application any; } then { permit; log { session-init; } } } policy 26 { match { source-address [ Admin_Network admin_nw2 admin_nw3 ERICSSON_MSDP oss RDC SALLE_TECHNIQUE SSG_NEW support_sun OAM_PPS ]; destination-address any; application any; } then { permit; } } policy 41 { match { source-address SSG_Host; destination-address CH_ADM; application any; } then { permit; } } policy 51 { match { source-address DCM_NETWORK; destination-address MINSAT; application any; } then { permit; } } policy 66 { match { source-address DCM_INTEC; destination-address MINSAT; application any; } then { permit; log { session-init; } } } policy 73 { match { source-address AGENCES_INTERIEUR; destination-address MINSAT; application any; } then { permit; } } policy 80 { match { source-address ANNEXE_NW; destination-address MINSAT; application any; } then { permit; } } policy 82 { match { source-address Customer_LAN_4; destination-address MINSAT; application any; } then { permit; } } policy 90 { match { source-address ROUTEUR_CARES; destination-address MINSAT; application any; } then { permit; } } policy 92 { match { source-address INTEC_MEDIATION; destination-address CRS_SERVER; application any; } then { permit; log { session-init; } } } policy 93 { match { source-address CARES_1; destination-address MINSAT; application any; } then { permit; log { session-init; } } } policy 94 { match { source-address CARES_2; destination-address MINSAT; application any; } then { permit; } } policy 103 { match { source-address NEW_CALL-CENTER; destination-address MINSAT; application any; } then { permit; log { session-init; } } } /* "LMS" */ policy 107 { match { source-address LMS; destination-address MINSAT; application any; } then { permit; log { session-init; } } } /* "LMS-V1" */ policy 108 { match { source-address LMS-V1; destination-address MINSAT; application any; } then { permit; log { session-init; } } } /* "LMS-V2" */ policy 109 { match { source-address LMS-V2; destination-address MINSAT; application any; } then { permit; log { session-init; } } } /* "PEER-LMS" */ policy 110 { match { source-address PEER-LMS; destination-address MINSAT; application any; } then { permit; log { session-init; } } } /* "OPENCODE_S1" */ policy 124 { match { source-address OPENCODE_S1; destination-address MINSAT; application any; } then { permit; log { session-init; } } } /* "OPENCODE_S2" */ policy 125 { match { source-address OPENCODE_S2; destination-address MINSAT; application any; } then { permit; log { session-init; } } } /* "OPENCODE_S3" */ policy 126 { match { source-address OPENCODE_S3; destination-address MINSAT; application any; } then { permit; log { session-init; } } } /* "OPENCODE_S4" */ policy 127 { match { source-address OPENCODE_S4; destination-address MINSAT; application any; } then { permit; log { session-init; } } } /* "CARES" */ policy 128 { match { source-address CARES; destination-address MINSAT; application any; } then { permit; log { session-init; } } } /* "Identification" */ policy 141 { match { source-address Identification; destination-address MINSAT; application any; } then { permit; log { session-init; } } } /* "Identification" */ policy 144 { match { source-address SAUVE-RESEAU; destination-address MINSAT; application any; } then { permit; log { session-init; } } } /* "IME_BCK" */ policy 145 { match { source-address IME_BCK; destination-address CRS_SERVER; application any; } then { permit; log { session-init; } } } policy 157 { match { source-address [ ANNEXE_NW BILLING BILLING_11 CARES CARES_1 CARES_2 CARES-Test Customer_LAN_4 DCM_INTEC DCM_NETWORK LMS LMS-V1 LMS-V2 NEW_CALL-CENTER PEER-LMS ROUTEUR_CARES AGENCES_INTERIEUR OPENCODE_S ]; destination-address MINSAT_CS5; application any; } then { permit; log { session-init; } } } /* "IME_BCK" */ policy 162 { match { source-address PACKETFENCE; destination-address CRS_SERVER; application any; } then { permit; log { session-init; } } } policy 169 { match { source-address INTEC_MEDIATION; destination-address any; application any; } then { permit; } } policy 181 { match { source-address CARES-Test; destination-address MINSAT; application any; } then { permit; log { session-init; } } } policy 193 { match { source-address [ Admin_Network Identification Paie ]; destination-address MINSAT_CS5; application any; } then { permit; log { session-init; } } } policy 198 { match { source-address SSG_Host; destination-address MINSAT_CS5; application any; } then { permit; log { session-init; } } } policy 201 { match { source-address VPNMiniagence; destination-address MINSAT_CS5; application any; } then { permit; log { session-init; } } } policy 206 { match { source-address ACSvirtual; destination-address HXC; application any; } then { permit; log { session-init; } } } policy 207 { match { source-address SAUVE-RESEAU; destination-address MINSAT_CS5; application any; } then { permit; log { session-init; } } } policy 209 { match { source-address PROXYCOM; destination-address MINSAT_CS5; application any; } then { permit; log { session-init; } } } policy 224 { match { source-address New_BI; destination-address CRS_SERVER; application any; } then { permit; log { session-init; } } } policy 231 { match { source-address SRV-Gdigital; destination-address MINSAT_CS5; application any; } then { permit; log { session-init; } } } policy 238 { match { source-address oss_group; destination-address any; application any; } then { permit; log { session-init; } } } policy 244 { match { source-address admin_nw2; destination-address CRS_BAIE; application any; } then { permit; log { session-init; } } } policy 245 { match { source-address IntMaourey; destination-address MINSAT_CS5; application any; } then { permit; } } policy 247 { match { source-address opencode1; destination-address CRS_SERVER; application any; } then { permit; log { session-init; } } } policy 248 { match { source-address opencode2; destination-address CRS_SERVER; application any; } then { permit; log { session-init; } } } policy 264 { match { source-address ANNEXE_NW; destination-address CRS_SERVER; application any; } then { permit; } } policy 265 { match { source-address ANNEXE_NW; destination-address HXC; application any; } then { permit; } } policy 287 { match { source-address admin_nw3; destination-address any; application any; } then { permit; } } policy 298 { match { source-address New_OSS; destination-address MINSAT_CS5; application any; } then { permit; log { session-init; } } } policy 302 { match { source-address New_OSS; destination-address CRS_SERVER; application any; } then { permit; log { session-init; } } } policy 304 { match { source-address New_OSS; destination-address CCN.148; application any; } then { permit; log { session-init; } } } policy 307 { match { source-address New_OSS; destination-address HXC; application any; } then { permit; log { session-init; } } } policy 308 { match { source-address NewBBSrv; destination-address MINSAT_CS5; application any; } then { permit; log { session-init; } } } policy 314 { match { source-address AGENCES_NIAMEY; destination-address MINSAT_CS5; application any; } then { permit; log { session-init; } } } /* "LMS-V1" */ policy 317 { match { source-address LMS-V3; destination-address MINSAT_CS5; application any; } then { permit; log { session-init; } } } policy 322 { match { source-address SSG_Host; destination-address any; application any; } then { permit; } } policy 325 { match { source-address INTEC_MEDIATION2; destination-address CRS_SERVER; application any; } then { permit; log { session-init; } } } } from-zone CH_Access-sz to-zone CH_OM-sz { policy 20 { match { source-address any; destination-address OSS_NOC_Range; application [ junos-tftp ping_trace ]; } then { permit; } } policy 31 { match { source-address CH_ACC; destination-address hlrcluster; application [ ftp_20_21 junos-ping junos-telnet ]; } then { permit; } } policy 34 { match { source-address CH_ACC; destination-address BILLING; application [ junos-ftp junos-ping junos-telnet ]; } then { permit; } } policy 40 { match { source-address any; destination-address SSG_Host; application any; } then { permit; } } /* "EMM_CGSN" */ policy 46 { match { source-address EMM; destination-address 172.16.2.240/32; application any; } then { permit; } } policy 47 { match { source-address Online_Gateway; destination-address CGSN_Gom_vips; application any; } then { permit; } } policy 49 { match { source-address any; destination-address NTP_SVR; application [ junos-ntp junos-ping ]; } then { permit; } } policy 71 { match { source-address EMA; destination-address HLR_R13; application any; } then { permit; } } policy 72 { match { source-address CCN2_OAM_VIP; destination-address OSS_NOC_Range; application any; } then { permit; count; } } policy 74 { match { source-address EMM; destination-address intec_nikira; application any; } then { permit; } } policy 75 { match { source-address EMM; destination-address smsc_2; application any; } then { permit; } } policy 76 { match { source-address EMM; destination-address GPTO_STAT; application any; } then { permit; } } policy 77 { match { source-address EMM; destination-address HLR_R13; application any; } then { permit; } } policy 78 { match { source-address SVR_SQL; destination-address HLR_R13; application any; } then { permit; } } policy 85 { match { source-address EMM; destination-address GPTO_STAT2; application any; } then { permit; } } policy 88 { match { source-address EMM; destination-address REPORTING; application any; } then { permit; } } policy 89 { match { source-address EMM; destination-address INTEC_MEDIATION; application any; } then { permit; } } policy 113 { match { source-address EMM; destination-address QOS_INTERNATIONAL; application any; } then { permit; } } policy 114 { match { source-address EMM; destination-address VAS_SERVER; application any; } then { permit; } } policy 146 { match { source-address CH_ACC; destination-address admin_nw2; application any; } then { permit; } } policy 165 { match { source-address any; destination-address INTEC; application any; } then { permit; } } policy 172 { match { source-address CCN3_OAM_VIP; destination-address OSS_NOC_Range; application any; } then { permit; count; } } policy 173 { match { source-address CCN4_OAM_VIP; destination-address OSS_NOC_Range; application any; } then { permit; count; } } policy 185 { match { source-address 10.50.21.65/32; destination-address 10.48.11.200/32; application [ junos-ftp junos-ping junos-ssh junos-tcp-any junos-udp-any ]; } then { permit; } } policy 225 { match { source-address Core_SS7_l; destination-address SIG_MOOVIC; application any; } then { permit; log { session-init; } } } policy 226 { match { source-address Core_SS7_r; destination-address SIG_MOOVIC; application any; } then { permit; log { session-init; } } } policy 253 { match { source-address [ CCN_Diameter_VIP CCN_IO CCN_VIPs CCN2_IO CCN2_OAM_VIP ]; destination-address 10.48.11.39; application any; } then { permit; } } inactive: policy 271 { match { source-address Core_SS7_l; destination-address MSSs_MOOVTG; application any; } then { permit; log { session-init; } } } inactive: policy 272 { match { source-address Core_SS7_r; destination-address MSSs_MOOVTG; application any; } then { permit; log { session-init; } } } policy 277 { match { source-address [ Core_SS7_l Core_SS7_r ]; destination-address MSS_MOOVBJ; application any; } then { permit; log { session-init; } } } policy 278 { match { source-address [ Core_SS7_l Core_SS7_r ]; destination-address [ MSC2_TG MSC_TG MSSs_MOOVTG ]; application any; } then { permit; log { session-init; } } } policy 284 { match { source-address CCN2_OAM_VIP; destination-address ERICSSON_MSDP; application any; } then { permit; log { session-init; } } } policy 288 { match { source-address Core_ss7_NiG; destination-address Msc_MOOVGA; application any; } then { permit; log { session-init; } } } inactive: policy 289 { match { source-address Core_ss7_NiG; destination-address Msc_MOOVGA; application any; } then { permit; log { session-init; } } } inactive: policy 310 { match { source-address [ Core_SS7_l Core_SS7_r ]; destination-address [ MSC2_TG MSC_TG MSS1_MOOVTG MSS2_MOOVTG MSS3_MOOVTG MSS4_MOOVTG ]; application any; } then { permit; log { session-init; } } } policy 409 { match { source-address [ CCN3_IO CCN4_IO ]; destination-address OSS_NOC_Range; application any; } then { permit; } } } from-zone CH_Internal-sz to-zone CH_OM-sz { policy 21 { match { source-address any; destination-address OSS_NOC_Range; application [ junos-telnet ping_trace ]; } then { permit; } } policy 23 { match { source-address SDP_VIP; destination-address hlr; application SDP-HLR; } then { permit; } } policy 36 { match { source-address CH_INT_IVR; destination-address SSG_Host; application any; } then { permit; } } policy 38 { match { source-address CH_INT; destination-address SSG_Host; application any; } then { permit; } } policy 43 { match { source-address SAE_Primary; destination-address SMSC; application any; } then { permit; } } policy 45 { match { source-address SAE_Primary; destination-address Customer_LAN_4; application any; } then { permit; } } policy 50 { match { source-address any; destination-address NTP_SVR; application [ junos-ntp junos-ping ]; } then { permit; log { session-init; } } } policy 52 { match { source-address FTP_BI; destination-address SMSC; application any; } then { permit; log { session-init; } } } policy 62 { match { source-address SAE_Primary; destination-address smsc_2; application any; } then { permit; } } policy 154 { match { source-address CH_INT_1; destination-address [ NOC_Network hlrcluster SMSC_IP ]; application any; } then { permit; log { session-init; } } } policy 166 { match { source-address any; destination-address INTEC_MEDIATION; application any; } then { permit; } } /* "MOBILERA" */ inactive: policy 174 { match { source-address LUVA_VIPs; destination-address MOBILERA_SERVER; application any; } then { permit; log { session-init; } } } /* "MOBILERA" */ inactive: policy 175 { match { source-address LUVA_VIP3; destination-address MOBILERA_SERVER; application any; } then { permit; log { session-init; } } } inactive: policy 179 { match { source-address [ AIR3 AIR4 new-SDP1 NEW-SDP2 SDP_VIP ]; destination-address [ IME_BCK INTEC_MEDIATION ]; application any; } then { permit; log { session-init; } } } policy 203 { match { source-address [ new-SDP1 NEW-SDP2 ]; destination-address [ OPENCODE_S1 OPENCODE_S2 OPENCODE_S3 OPENCODE_S4 ]; application any; } then { permit; log { session-init; } } } policy 221 { match { source-address SAE_Primary; destination-address SMSC_NEW; application any; } then { permit; log { session-init; } } } policy 312 { match { source-address [ new-SDP1 NEW-SDP2 SDP_VIP SDP2_VIP SDP3_VIP ]; destination-address New_OSS; application any; } then { permit; log { session-init; } } } policy 329 { match { source-address NIGEMA02_Traffic; destination-address HLR_R13; application any; } then { permit; } } policy 332 { match { source-address NIGEMA02_Traffic; destination-address [ 10.48.11.39 NewBBSrv NTP_SVR SERVEUR_VAS_IT ]; application any; } then { permit; log { session-init; } } } } from-zone CH_Admin-sz to-zone CH_OM-sz { policy 22 { match { source-address any; destination-address OSS_NOC_Range; application ping_trace; } then { permit; } } policy 24 { match { source-address CH_ADM; destination-address hlr; application any; } then { permit; } } policy 42 { match { source-address CH_ADM; destination-address SSG_Host; application any; } then { permit; } } policy 48 { match { source-address any; destination-address NTP_SVR; application [ junos-ntp junos-ping ]; } then { permit; log { session-init; } } } policy 81 { match { source-address MINSAT; destination-address ANNEXE_NW; application any; } then { permit; } } policy 101 { match { source-address CRS_SERVER; destination-address OSS_NOC_Range; application any; } then { permit; } } policy 156 { match { source-address MINSAT_CS5; destination-address [ Admin_Network ANNEXE_NW CARES CARES_1 CARES_2 Customer_LAN_4 DCM_INTEC DCM_NETWORK Identification LMS LMS-V1 LMS-V2 NEW_CALL-CENTER Paie PEER-LMS ROUTEUR_CARES AGENCES_INTERIEUR OPENCODE_S ]; application any; } then { permit; log { session-init; } } } policy 164 { match { source-address any; destination-address INTEC_MEDIATION; application any; } then { permit; } } policy 279 { match { source-address MINSAT; destination-address [ LMS LMS-V1 LMS-V2 ]; application any; } then { permit; log { session-init; } } } } from-zone TELEPIN to-zone CH_Internal-sz { policy 53 { match { source-address TELEPIN-NW; destination-address LUVA_VIPs; application any; } then { permit; log { session-init; } } } policy 184 { match { source-address [ TELEPIN-NW TELEPIN_1 TELEPIN_2 ]; destination-address [ AIR3 AIR4 LUVA_VIPs ]; application any; } then { permit; log { session-init; } } } } from-zone CH_Internal-sz to-zone TELEPIN { policy 54 { match { source-address LUVA_VIPs; destination-address TELEPIN-NW; application any; } then { permit; log { session-init; } } } } from-zone TELEPIN to-zone CH_OM-sz { policy 55 { match { source-address TELEPIN-NW; destination-address SMSC; application any; } then { permit; log { session-init; } } } policy 63 { match { source-address TELEPIN-NW; destination-address smsc_2; application any; } then { permit; log { session-init; } } } policy 115 { match { source-address TELEPIN-NW; destination-address BILLS_SERVER; application any; } then { permit; } } policy 137 { match { source-address TELEPIN-NW; destination-address [ DNS1-DSI DNS2-DSI ]; application [ junos-dns-tcp junos-dns-udp cust-icmp-any ]; } then { permit; log { session-init; } } } policy 167 { match { source-address any; destination-address INTEC_MEDIATION; application any; } then { permit; } } /* "RDC" */ inactive: policy 176 { match { source-address TELEPIN-NW; destination-address RDC; application any; } then { permit; log { session-init; } } } policy 187 { match { source-address [ TELEPIN_1 TELEPIN_2 ]; destination-address [ IME_BCK INTEC_MEDIATION ]; application junos-ftp; } then { permit; log { session-init; } } } policy 199 { match { source-address TELEPIN_2; destination-address Cares-virtuel; application any; } then { permit; log { session-init; } } } policy 213 { match { source-address TELEPIN_1; destination-address CARES; application any; } then { permit; log { session-init; } } } policy 220 { match { source-address [ TELEPIN_1 TELEPIN_2 ]; destination-address SMSC_NEW; application any; } then { permit; log { session-init; } } } /* "RDC" */ policy 321 { match { source-address TELEPIN-NW; destination-address RESEAU_SAUVEGARDE; application any; } then { permit; log { session-init; } } } } from-zone CH_OM-sz to-zone TELEPIN { policy 56 { match { source-address SMSC; destination-address TELEPIN-NW; application any; } then { permit; log { session-init; } } } policy 57 { match { source-address [ Admin_Network admin_nw2 admin_nw3 ERICSSON_MSDP support_sun OAM_PPS ]; destination-address TELEPIN-NW; application any; } then { permit; } } policy 58 { match { source-address TELEPIN-Public; destination-address TELEPIN-NW; application any; } then { permit; log { session-init; } } } policy 61 { match { source-address smsc_2; destination-address TELEPIN-NW; application any; } then { permit; log { session-init; } } } policy 64 { match { source-address DCM_NETWORK; destination-address TELEPIN-NW; application any; } then { permit; } } policy 67 { match { source-address FW_ASA; destination-address TELEPIN-NW; application any; } then { permit; log { session-init; } } } policy 69 { match { source-address routeur_lan; destination-address TELEPIN-NW; application any; } then { permit; } } policy 70 { match { source-address AGENCES_INTERIEUR; destination-address TELEPIN-NW; application any; } then { permit; log { session-init; } } } policy 79 { match { source-address APN_STAFF; destination-address TELEPIN-NW; application any; } then { permit; log { session-init; } } } policy 83 { match { source-address ANNEXE_NW; destination-address TELEPIN-NW; application any; } then { permit; } } policy 86 { match { source-address ROUTEUR_TELEPIN; destination-address any; application any; } then { permit; log { session-init; } } } policy 105 { match { source-address NEW_CALL-CENTER; destination-address TELEPIN-NW; application any; } then { permit; log { session-init; } } } policy 112 { match { source-address RDC; destination-address TELEPIN-NW; application any; } then { permit; log { session-init; } } } /* "ERP" */ policy 122 { match { source-address ERP; destination-address TELEPIN-NW; application any; } then { permit; log { session-init; } } } /* "AGENCE_MARADI" */ policy 123 { match { source-address AGENCE_MARADI; destination-address TELEPIN-NW; application any; } then { permit; log { session-init; } } } policy 129 { match { source-address ANNEXE_NW; destination-address TELEPIN-NW; application any; } then { permit; } } /* "NAGIOS" */ policy 138 { match { source-address SAUVE-RESEAU; destination-address TELEPIN-NW; application [ junos-https junos-ping junos-ssh junos-telnet junos-tftp ]; } then { permit; log { session-init; } } } /* "Paie" */ policy 143 { match { source-address Paie; destination-address TELEPIN-NW; application any; } then { permit; log { session-init; } } } policy 190 { match { source-address [ IME_BCK INTEC_MEDIATION ]; destination-address [ TELEPIN_1 TELEPIN_2 ]; application junos-ftp; } then { permit; log { session-init; } } } policy 200 { match { source-address Cares-virtuel; destination-address TELEPIN_2; application any; } then { permit; log { session-init; } } } policy 202 { match { source-address VPNMiniagence; destination-address TELEPIN_PROXY; application any; } then { permit; log { session-init; } } } policy 210 { match { source-address CARES_1; destination-address TELEPIN-NW; application any; } then { permit; log { session-init; } } } /* "AIRTIME" */ policy 214 { match { source-address AIRTIME_IP; destination-address [ TELEPIN_1 TELEPIN_2 ]; application any; } then { permit; log { session-init; } } } policy 218 { match { source-address SMSC_NEW; destination-address [ TELEPIN_1 TELEPIN_2 ]; application any; } then { permit; log { session-init; } } } policy 243 { match { source-address oss_group; destination-address any; application any; } then { permit; } } policy 246 { match { source-address IntMaourey; destination-address TELEPIN-NW; application any; } then { permit; } } policy 249 { match { source-address TLC-SRV; destination-address TELEPIN_1; application any; } then { permit; } } policy 250 { match { source-address TLC-SRV; destination-address TELEPIN_2; application any; } then { permit; } } policy 251 { match { source-address PACKETFENCE; destination-address TELEPIN_PROXY; application any; } then { permit; log { session-init; } } } policy 306 { match { source-address New_OSS; destination-address [ TELEPIN_1 TELEPIN_2 ]; application any; } then { permit; log { session-init; } } } policy 315 { match { source-address AGENCES_NIAMEY; destination-address TELEPIN-NW; application any; } then { permit; } } policy 320 { match { source-address RESEAU_SAUVEGARDE; destination-address TELEPIN-NW; application any; } then { permit; log { session-init; } } } policy 408 { match { source-address APN_STAFF; destination-address any; application any; } then { permit; } } } from-zone TELEPIN to-zone CH_Access-sz { policy 59 { match { source-address TELEPIN-NW; destination-address NTP_2; application [ junos-ntp junos-ping ]; } then { permit; log { session-init; } } } } from-zone CH_Access-sz to-zone TELEPIN { policy 102 { match { source-address EMM; destination-address TELEPIN-NW; application any; } then { permit; } } } from-zone CHAR_OM-sz to-zone CH_Access-sz { policy 147 { match { source-address Charging_OM; destination-address NTP_2; application [ junos-ntp junos-ping junos-telnet cust-junos-traceroute ]; } then { permit; log { session-init; } } } } from-zone CHAR_OM-sz to-zone CH_OM-sz { policy 148 { match { source-address Charging_OM; destination-address [ admin_nw2 NOC_Network rsg SSG_Host ]; application any; } then { permit; log { session-init; } } } policy 168 { match { source-address any; destination-address INTEC_MEDIATION; application any; } then { permit; } } policy 208 { match { source-address any; destination-address NTP_SVR; application any; } then { permit; } } } from-zone CH_OM-sz to-zone CHAR_OM-sz { policy 149 { match { source-address [ admin_nw2 Customer_LAN_4 ERICSSON_MSDP INTEC_MEDIATION2 NOC_Network rsg SALLE_TECHNIQUE SSG_Host OAM_PPS ]; destination-address any; application any; } then { permit; log { session-init; } } } inactive: policy 191 { match { source-address IP_PUB_AIR_TMP; destination-address Charging_OM; application any; } then { permit; log { session-init; } } } /* "IME" */ policy 192 { match { source-address [ IME_BCK INTEC_MEDIATION ]; destination-address Charging_OM; application any; } then { permit; log { session-init; } } } /* "TLC-AIR1" */ policy 211 { match { source-address FLOOZ_TEST; destination-address AIR_2B; application any; } then { permit; log { session-init; } } } /* "TLC-AIR2" */ policy 216 { match { source-address [ TLC-APP1 TLC-APP2 TLC-APP3 ]; destination-address AIR_2B; application any; } then { permit; log { session-init; } } } policy 223 { match { source-address SVA; destination-address AIR_2B; application any; } then { permit; log { session-init; } } } policy 237 { match { source-address oss_group; destination-address any; application any; } then { permit; log { session-init; } } } policy 256 { match { source-address CRBT_RANGE; destination-address AIR_2B; application any; } then { permit; log { session-init; } } } inactive: policy 257 { match { source-address CRBT_NODE4; destination-address AIR_2B; application any; } then { permit; log { session-init; } } } policy 292 { match { source-address TILIA/SMS_FACEBOOK; destination-address AIR_2B; application any; } then { permit; log { session-init; } } } policy 299 { match { source-address New_OSS; destination-address [ AIR_202 AIR_2B ]; application any; } then { permit; log { session-init; } } } } from-zone CHAR_OM-sz to-zone CH_Internal-sz { policy 150 { match { source-address Charging_OM; destination-address CH_INT_1; application any; } then { permit; log { session-init; } } } } from-zone CH_Internal-sz to-zone CHAR_OM-sz { policy 151 { match { source-address CH_INT_1; destination-address Charging_OM; application any; } then { permit; log { session-init; } } } policy 188 { match { source-address any; destination-address Charging_OM; application any; } then { permit; } } } from-zone CHAR_OM-sz to-zone CH_Admin-sz { policy 152 { match { source-address Charging_OM; destination-address [ CH_ADM CH_ADM_1 ]; application any; } then { permit; log { session-init; } } } } from-zone CH_Admin-sz to-zone CHAR_OM-sz { policy 153 { match { source-address [ CH_ADM CH_ADM_1 ]; destination-address Charging_OM; application any; } then { permit; log { session-init; } } } } from-zone MGW_TRAF-SZ to-zone CH_OM-sz { policy 232 { match { source-address NeMGW_TRAF; destination-address MGWs_MOOVIC; application any; } then { permit; log { session-init; } } } policy 235 { match { source-address NeMGW_TRAF; destination-address MGW1_MOOVIC; application any; } then { permit; log { session-init; } } } policy 258 { match { source-address NeMGW_TRAF; destination-address MGWs_MOOVBJ; application any; } then { permit; log { session-init; } } } policy 263 { match { source-address NeMGW_TRAF; destination-address MGWs_MOOVTG; application any; } then { permit; log { session-init; } } } policy 267 { match { source-address NEMSS_GROUP; destination-address MSS_MOOVBJ; application any; } then { permit; } } inactive: policy 270 { match { source-address NEMSS_GROUP; destination-address MSSs_MOOVTG; application any; } then { permit; log { session-init; } } } policy 285 { match { source-address NeMGW_TRAF; destination-address MGWs_MOOVGA; application any; } then { permit; log { session-init; } } } policy 311 { match { source-address NeMGW_TRAF; destination-address MGWs_MOOVIC; application any; } then { permit; log { session-init; } } } policy 313 { match { source-address NeMGW_TRAF; destination-address MSCs_MOOVGA_NEW; application any; } then { permit; log { session-init; } } } } from-zone CH_OM-sz to-zone MGW_TRAF-SZ { policy 233 { match { source-address MGWs_MOOVIC; destination-address NeMGW_TRAF; application any; } then { permit; } } policy 234 { match { source-address SAUVE-RESEAU; destination-address NeMGW_TRAF; application any; } then { permit; } } policy 236 { match { source-address MGW1_MOOVIC; destination-address NeMGW_TRAF; application any; } then { permit; } } policy 240 { match { source-address oss_group; destination-address any; application any; } then { permit; } } policy 259 { match { source-address MGWs_MOOVBJ; destination-address NeMGW_TRAF; application any; } then { permit; log { session-init; } } } policy 260 { match { source-address admin_nw2; destination-address NeMGW_TRAF; application any; } then { permit; } } policy 261 { match { source-address Customer_LAN_4; destination-address NeMGW_TRAF; application any; } then { permit; log { session-init; } } } policy 262 { match { source-address MGWs_MOOVTG; destination-address NeMGW_TRAF; application any; } then { permit; log { session-init; } } } inactive: policy 268 { match { source-address MSS_MOOVBJ; destination-address NEMSS_GROUP; application any; } then { permit; log { session-init; } } } inactive: policy 269 { match { source-address MSSs_MOOVTG; destination-address NEMSS_GROUP; application any; } then { permit; log { session-init; } } } policy 281 { match { source-address MGWs_BJ; destination-address NeMGW_TRAF; application any; } then { permit; log { session-init; } } } policy 286 { match { source-address MGWs_MOOVGA; destination-address NeMGW_TRAF; application any; } then { permit; log { session-init; } } } } from-zone CH_OM-sz to-zone CN_OM-sz { policy 242 { match { source-address oss_group; destination-address any; application any; } then { permit; } } policy 282 { match { source-address ERICSSON_MSDP; destination-address any; application any; } then { permit; } } } from-zone CH_Access-sz to-zone CHAR_OM-sz { policy 327 { match { source-address any; destination-address any; application any; } then { permit; } } } from-zone SS7_CH_1-sz to-zone SCTP_CH_1-sz { policy 400 { match { source-address any; destination-address any; application any; } then { permit; } } } from-zone SS7_CH_2-sz to-zone SCTP_CH_2-sz { policy 401 { match { source-address any; destination-address any; application any; } then { permit; } } } from-zone SCTP_CH_1-sz to-zone SS7_CH_1-sz { policy 402 { match { source-address any; destination-address any; application any; } then { permit; } } } from-zone SCTP_CH_2-sz to-zone SS7_CH_2-sz { policy 403 { match { source-address any; destination-address any; application any; } then { permit; } } } from-zone OM_INT-sz to-zone OM_EXT-sz { policy 404 { match { source-address any; destination-address any; application any; } then { permit; } } } from-zone OM_EXT-sz to-zone OM_INT-sz { policy 405 { match { source-address any; destination-address any; application any; } then { permit; } } } from-zone MGW_TRAF-SZ to-zone MGW_EXT-sz { policy 406 { match { source-address any; destination-address any; application any; } then { permit; } } } from-zone MGW_EXT-sz to-zone MGW_TRAF-SZ { policy 407 { match { source-address any; destination-address any; application any; } then { permit; } } } } flow { tcp-session { no-syn-check; } } } access { firewall-authentication { pass-through { default-profile auth; } web-authentication { default-profile auth; } } profile Local { authentication-order password; } profile auth { authentication-order password; } } applications { application custom-junos-http { term t1 protocol tcp destination-port 80 inactivity-timeout 300; } /* Please Set Application Timeout manually between 4 and 86400. Original Value in Secs=-60 */ application http_8080 { term http_8080 protocol tcp destination-port 8080-8080 source-port 0-65535; } /* Please Set Application Timeout manually between 4 and 86400. Original Value in Secs=-60 */ application cai { term cai protocol tcp destination-port 3300-3300 source-port 0-65535; } /* Please Set Application Timeout manually between 4 and 86400. Original Value in Secs=-60 */ application corba { term corba protocol tcp destination-port 22001-22001 source-port 0-65535; term corba_1 protocol tcp destination-port 31000-31000 source-port 0-65535; term corba_2 protocol udp destination-port 22001-22001 source-port 0-65535; term corba_3 protocol udp destination-port 31000-31000 source-port 0-65535; } /* Please Set Application Timeout manually between 4 and 86400. Original Value in Secs=-60 */ application ftp_20_21 { term ftp_20_21 protocol tcp destination-port 20-20 source-port 0-65535; term ftp_20_21_1 protocol tcp destination-port 21-21 source-port 0-65535; } /* Please Set Application Timeout manually between 4 and 86400. Original Value in Secs=-60 */ application pxm { term pxm protocol tcp destination-port 8888-8888 source-port 0-65535; } /* Please Set Application Timeout manually between 4 and 86400. Original Value in Secs=-60 */ application pxm1 { term pxm1 protocol tcp destination-port 1024-65535 source-port 0-65535; } /* Please Set Application Timeout manually between 4 and 86400. Original Value in Secs=-60 */ application radad { term radad protocol tcp destination-port 1646-1646 source-port 0-65535; } /* Please Set Application Timeout manually between 4 and 86400. Original Value in Secs=-60 */ application radius-acct { term radius-acct protocol udp destination-port 1813-1813 source-port 0-65535; } /* Please Set Application Timeout manually between 4 and 86400. Original Value in Secs=-60 */ application radius-auth { term radius-auth protocol udp destination-port 1812-1812 source-port 0-65535; } /* Please Set Application Timeout manually between 4 and 86400. Original Value in Secs=-60 */ application Diameter { term Diameter protocol tcp destination-port 3868-3868 source-port 0-65535; term Diameter_1 protocol udp destination-port 3868-3868 source-port 0-65535; term Diameter_2 protocol 132 destination-port 3868-3868 source-port 0-65535; } /* Please Set Application Timeout manually between 4 and 86400. Original Value in Secs=-60 */ application sql { term sql protocol tcp destination-port 1521-1521 source-port 0-65535; } /* Please Set Application Timeout manually between 4 and 86400. Original Value in Secs=-60 */ application wap { term wap protocol tcp destination-port 9200-9203 source-port 0-65535; term wap_1 protocol udp destination-port 9200-9203 source-port 0-65535; } /* Please Set Application Timeout manually between 4 and 86400. Original Value in Secs=-60 */ application Windows-TS { term Windows-TS protocol tcp destination-port 3899-3899 source-port 0-65535; } /* Please Set Application Timeout manually between 4 and 86400. Original Value in Secs=-60 */ application X-Windows1 { term X-Windows1 protocol tcp destination-port 0-65535 source-port 6000-60000; } /* Please Set Application Timeout manually between 4 and 86400. Original Value in Secs=-60 */ application X-Windows2 { term X-Windows2 protocol tcp destination-port 177-177 source-port 0-65535; term X-Windows2_1 protocol udp destination-port 177-177 source-port 0-65535; } /* Please Set Application Timeout manually between 4 and 86400. Original Value in Secs=-60 */ application X-Windows3 { term X-Windows3 protocol tcp destination-port 7100-7100 source-port 0-65535; } /* Please Set Application Timeout manually between 4 and 86400. Original Value in Secs=-60 */ application rpc { term rpc protocol udp destination-port 111-111 source-port 0-65535; } /* Please Set Application Timeout manually between 4 and 86400. Original Value in Secs=-60 */ application SDP-HLR { term SDP-HLR protocol tcp destination-port 5000-5000 source-port 0-65535; } /* Please Set Application Timeout manually between 4 and 86400. Original Value in Secs=-60 */ application netbios-ns { term netbios-ns protocol udp destination-port 137-137 source-port 1-65535; } /* Please Set Application Timeout manually between 4 and 86400. Original Value in Secs=-60 */ application netbios-dgm { term netbios-dgm protocol udp destination-port 138-138 source-port 1-65535; } /* Please Set Application Timeout manually between 4 and 86400. Original Value in Secs=-60 */ application netbios-ssn { term netbios-ssn protocol udp destination-port 139-139 source-port 1-65535; } application cust-junos-snmp-get { term t1 protocol udp destination-port 161-162 source-port 1-65535 inactivity-timeout 60; term t2 protocol tcp destination-port 161-162 source-port 1-65535 inactivity-timeout 1800; } application cust-junos-traceroute-icmp { term t1 protocol icmp icmp-type 8 icmp-code 0 inactivity-timeout 60; } application cust-junos-traceroute-udp { term t1 protocol udp destination-port 33400-34000 source-port 1-65535 inactivity-timeout 60; } application cust-icmp-any { term t1 protocol icmp; } application-set cust-junos-traceroute { application cust-junos-traceroute-icmp; application cust-junos-traceroute-udp; } application-set oss-ch-access { application ftp_20_21; application netbios-dgm; application netbios-ns; application netbios-ssn; application junos-ntp; application junos-ping; application pxm; application pxm1; application cust-junos-snmp-get; application junos-ssh; application junos-telnet; application junos-tftp; } application-set ping_trace { application junos-ping; application cust-junos-traceroute; } application-set radiu { application junos-ldap; application radad; application radius-acct; application radius-auth; } application-set unix_manage { application junos-ftp; application ftp_20_21; application custom-junos-http; application http_8080; application junos-https; application junos-ssh; application junos-telnet; } application-set win_manage { application ftp_20_21; application custom-junos-http; application http_8080; application junos-https; application junos-ssh; application junos-telnet; application junos-vnc; application Windows-TS; } application-set x-windows-ports { application X-Windows1; application X-Windows2; application X-Windows3; } } FPC / PIC / Port numbers MUST ALWAYS be changed to match your Juniper Networks hardware. 1:unset key protection enable Line not recognized by S2J 2:set clock ntp NTP is not configurable in Junos. Please use the operational mode command show ntp status 3:set clock timezone 0 4:set vrouter trust-vr sharable Vsys support is not currently supported. 5:set vrouter "untrust-vr" 6:exit 7:set vrouter "trust-vr" 8:unset auto-route-export 9:exit 10:set vrouter name "siteinfra-vr" id 1025 11:set vrouter "siteinfra-vr" 12:unset auto-route-export 13:exit 14:set vrouter name "SS7_CH-vr" id 1026 15:set vrouter "SS7_CH-vr" 16:unset auto-route-export 17:exit 18:set vrouter name "OM-vr" id 1027 19:set vrouter "OM-vr" 20:unset auto-route-export 21:exit 22:set service "HTTP" timeout 5 Creating custom application since JUNOS does not allow modifying standard applications. 23:set service "http_8080" protocol tcp src-port 0-65535 dst-port 8080-8080 24:set service "cai" protocol tcp src-port 0-65535 dst-port 3300-3300 25:set service "corba" protocol tcp src-port 0-65535 dst-port 22001-22001 26:set service "corba" protocol tcp src-port 0-65535 dst-port 31000-31000 27:set service "corba" protocol udp src-port 0-65535 dst-port 22001-22001 28:set service "corba" protocol udp src-port 0-65535 dst-port 31000-31000 29:set service "ftp_20_21" protocol tcp src-port 0-65535 dst-port 20-20 30:set service "ftp_20_21" protocol tcp src-port 0-65535 dst-port 21-21 31:set service "pxm" protocol tcp src-port 0-65535 dst-port 8888-8888 32:set service "pxm1" protocol tcp src-port 0-65535 dst-port 1024-65535 33:set service "radad" protocol tcp src-port 0-65535 dst-port 1646-1646 34:set service "radius-acct" protocol udp src-port 0-65535 dst-port 1813-1813 35:set service "radius-auth" protocol udp src-port 0-65535 dst-port 1812-1812 36:set service "Diameter" protocol tcp src-port 0-65535 dst-port 3868-3868 37:set service "Diameter" protocol udp src-port 0-65535 dst-port 3868-3868 38:set service "Diameter" protocol 132 src-port 0-65535 dst-port 3868-3868 39:set service "sql" protocol tcp src-port 0-65535 dst-port 1521-1521 40:set service "wap" protocol tcp src-port 0-65535 dst-port 9200-9203 41:set service "wap" protocol udp src-port 0-65535 dst-port 9200-9203 42:set service "Windows-TS" protocol tcp src-port 0-65535 dst-port 3899-3899 43:set service "X-Windows1" protocol tcp src-port 6000-60000 dst-port 0-65535 44:set service "X-Windows2" protocol tcp src-port 0-65535 dst-port 177-177 45:set service "X-Windows2" protocol udp src-port 0-65535 dst-port 177-177 46:set service "X-Windows3" protocol tcp src-port 0-65535 dst-port 7100-7100 47:set service "rpc" protocol udp src-port 0-65535 dst-port 111-111 48:set service "SDP-HLR" protocol tcp src-port 0-65535 dst-port 5000-5000 49:set service "netbios-ns" protocol udp src-port 1-65535 dst-port 137-137 50:set service "netbios-dgm" protocol udp src-port 1-65535 dst-port 138-138 51:set service "netbios-ssn" protocol udp src-port 1-65535 dst-port 139-139 52:set alg appleichat enable Line not yet supported by S2J 53:unset alg appleichat re-assembly enable Line not recognized by S2J 54:set alg sctp enable Line not yet supported by S2J 55:set auth-server "Local" id 0 56:set auth-server "Local" server-name "Local" 57:set auth default auth server "Local" 58:set auth radius accounting port 1646 59:set admin name "netscreen" Password(s) must be changed before commit 60:set admin password "nKVUM2rwMUzPcrkG5sWIHdCtqkAibn" Use 'set system root-authentication' to set root password 61:set admin auth web timeout 10 Line not recognized by S2J 62:set admin auth server "Local" 63:set admin format dos Line not recognized by S2J 64:set zone "Trust" vrouter "trust-vr" 65:set zone "Untrust" vrouter "trust-vr" 66:set zone "DMZ" vrouter "trust-vr" 67:set zone "VLAN" vrouter "trust-vr" Transparent mode is not supported by the S2J tool yet. 68:set zone id 1001 "CH_Admin-sz" 69:set zone id 1002 "CH_Access-sz" 70:set zone id 1003 "CH_Internal-sz" 71:set zone id 1004 "CN_OM-sz" 72:set zone "CN_OM-sz" vrouter "siteinfra-vr" 73:set zone id 1005 "CH_OM-sz" 74:set zone "CH_OM-sz" vrouter "siteinfra-vr" 75:set zone id 1000 "TELEPIN" 76:set zone id 101 "CHAR_OM-sz" 77:set zone id 102 "MGW_TRAF-SZ" 78:set zone id 500 "SS7_CH_1-sz" 79:set zone "SS7_CH_1-sz" vrouter "SS7_CH-vr" 80:set zone id 501 "SS7_CH_2-sz" 81:set zone "SS7_CH_2-sz" vrouter "SS7_CH-vr" 82:set zone id 502 "SCTP_CH_1-sz" 83:set zone "SCTP_CH_1-sz" vrouter "SS7_CH-vr" 84:set zone id 503 "SCTP_CH_2-sz" 85:set zone "SCTP_CH_2-sz" vrouter "SS7_CH-vr" 86:set zone id 504 "OM_INT-sz" 87:set zone "OM_INT-sz" vrouter "OM-vr" 88:set zone id 505 "OM_EXT-sz" 89:set zone "OM_EXT-sz" vrouter "OM-vr" 90:set zone id 506 "MGW_EXT-sz" 91:set zone "Untrust-Tun" vrouter "trust-vr" Tunnel Zone is not supported in JUNOS 92:set zone id 100 "Paie" tunnel CH_Admin-sz Line not yet supported by S2J 93:set zone "Trust" tcp-rst 94:set zone "Untrust" block This is the default in JUNOS 95:unset zone "Untrust" tcp-rst 96:set zone "MGT" block This is the default in JUNOS 97:unset zone "V1-Trust" tcp-rst 98:unset zone "V1-Untrust" tcp-rst 99:set zone "DMZ" tcp-rst 100:unset zone "V1-DMZ" tcp-rst 101:set zone "VLAN" tcp-rst Transparent mode is not supported by the S2J tool yet. 102:set zone "CH_Admin-sz" tcp-rst 103:set zone "CH_Access-sz" tcp-rst 104:set zone "CH_Internal-sz" tcp-rst 105:set zone "CN_OM-sz" tcp-rst 106:set zone "CH_OM-sz" tcp-rst 107:set zone "TELEPIN" tcp-rst 108:set zone "CHAR_OM-sz" tcp-rst 109:set zone "MGW_TRAF-SZ" tcp-rst 110:set zone "SS7_CH_1-sz" tcp-rst 111:set zone "SS7_CH_2-sz" tcp-rst 112:set zone "SCTP_CH_1-sz" tcp-rst 113:set zone "SCTP_CH_2-sz" tcp-rst 114:set zone "OM_INT-sz" tcp-rst 115:set zone "OM_EXT-sz" tcp-rst 116:set zone "MGW_EXT-sz" tcp-rst 117:set zone "Untrust" screen tear-drop 118:set zone "Untrust" screen syn-flood 119:set zone "Untrust" screen ping-death 120:set zone "Untrust" screen ip-filter-src 121:set zone "Untrust" screen land 122:set zone "V1-Untrust" screen tear-drop 123:set zone "V1-Untrust" screen syn-flood 124:set zone "V1-Untrust" screen ping-death 125:set zone "V1-Untrust" screen ip-filter-src 126:set zone "V1-Untrust" screen land 127:set interface ethernet0/0 phy full 100mb 128:set interface "ethernet0/0" zone "Null" 129:set interface "ethernet0/0.31" tag 531 zone "CN_OM-sz" This interface type is not supported in JUNOS 130:set interface "ethernet0/0.32" tag 532 zone "CH_OM-sz" This interface type is not supported in JUNOS 131:set interface "ethernet0/0.33" tag 793 zone "SCTP_CH_1-sz" This interface type is not supported in JUNOS 132:set interface "ethernet0/0.34" tag 794 zone "SCTP_CH_2-sz" This interface type is not supported in JUNOS 133:set interface "ethernet0/0.35" tag 795 zone "OM_EXT-sz" This interface type is not supported in JUNOS 134:set interface "ethernet0/0.36" tag 798 zone "MGW_EXT-sz" This interface type is not supported in JUNOS 135:set interface "ethernet0/1" zone "CH_OM-sz" 136:set interface "ethernet0/2" zone "Null" 137:set interface "ethernet0/2.1" tag 541 zone "CH_Internal-sz" This interface type is not supported in JUNOS 138:set interface "ethernet0/2.2" tag 542 zone "CH_Admin-sz" This interface type is not supported in JUNOS 139:set interface "ethernet0/2.3" tag 543 zone "CHAR_OM-sz" This interface type is not supported in JUNOS 140:set interface "ethernet0/2.21" tag 501 zone "CH_Internal-sz" This interface type is not supported in JUNOS 141:set interface "ethernet0/2.22" tag 502 zone "CH_Internal-sz" This interface type is not supported in JUNOS 142:set interface "ethernet0/2.23" tag 503 zone "CH_Access-sz" This interface type is not supported in JUNOS 143:set interface "ethernet0/2.24" tag 521 zone "CH_Admin-sz" This interface type is not supported in JUNOS 144:set interface "ethernet0/2.25" tag 523 zone "CH_Access-sz" This interface type is not supported in JUNOS 145:set interface "ethernet0/2.26" tag 110 zone "TELEPIN" This interface type is not supported in JUNOS 146:set interface "ethernet0/2.27" tag 252 zone "MGW_TRAF-SZ" This interface type is not supported in JUNOS 147:set interface "ethernet0/2.30" tag 615 zone "CH_Internal-sz" This interface type is not supported in JUNOS 148:set interface "ethernet0/2.31" tag 616 zone "CH_Internal-sz" This interface type is not supported in JUNOS 149:set interface "ethernet0/2.33" tag 617 zone "SS7_CH_1-sz" This interface type is not supported in JUNOS 150:set interface "ethernet0/2.34" tag 618 zone "SS7_CH_2-sz" This interface type is not supported in JUNOS 151:set interface "ethernet0/2.35" tag 619 zone "OM_INT-sz" This interface type is not supported in JUNOS 152:unset interface vlan1 ip Line not recognized by S2J 153:set interface ethernet0/0.31 ip 192.168.16.54/29 This interface type is not supported in JUNOS 154:set interface ethernet0/0.31 route This interface type is not supported in JUNOS 155:set interface ethernet0/0.32 ip 192.168.16.57/30 This interface type is not supported in JUNOS 156:set interface ethernet0/0.32 route This interface type is not supported in JUNOS 157:set interface ethernet0/0.33:1 ip 10.55.5.210/30 Channelized interface is not supported in JUNOS 158:set interface ethernet0/0.33:1 route Channelized interface is not supported in JUNOS 159:set interface ethernet0/0.34:2 ip 10.55.5.214/30 Channelized interface is not supported in JUNOS 160:set interface ethernet0/0.34:2 route Channelized interface is not supported in JUNOS 161:set interface ethernet0/0.35 ip 10.55.48.188/29 This interface type is not supported in JUNOS 162:set interface ethernet0/0.35 route This interface type is not supported in JUNOS 163:set interface ethernet0/0.36 ip 10.55.64.100/29 This interface type is not supported in JUNOS 164:set interface ethernet0/0.36 route This interface type is not supported in JUNOS 165:set interface ethernet0/1 ip 192.168.16.254/30 166:set interface ethernet0/1 route This is the default in JUNOS 167:set interface ethernet0/2.1 ip 10.50.20.126/25 This interface type is not supported in JUNOS 168:set interface ethernet0/2.1 route This interface type is not supported in JUNOS 169:set interface ethernet0/2.2 ip 10.50.20.190/26 This interface type is not supported in JUNOS 170:set interface ethernet0/2.2 route This interface type is not supported in JUNOS 171:set interface ethernet0/2.3 ip 10.50.20.254/26 This interface type is not supported in JUNOS 172:set interface ethernet0/2.3 route This interface type is not supported in JUNOS 173:set interface ethernet0/2.21 ip 192.168.15.126/26 This interface type is not supported in JUNOS 174:set interface ethernet0/2.21 route This interface type is not supported in JUNOS 175:set interface ethernet0/2.22 ip 192.168.15.1/28 This interface type is not supported in JUNOS 176:set interface ethernet0/2.22 route This interface type is not supported in JUNOS 177:set interface ethernet0/2.23 ip 192.168.15.190/27 This interface type is not supported in JUNOS 178:set interface ethernet0/2.23 route This interface type is not supported in JUNOS 179:set interface ethernet0/2.24 ip 192.168.16.30/27 This interface type is not supported in JUNOS 180:set interface ethernet0/2.24 route This interface type is not supported in JUNOS 181:set interface ethernet0/2.25 ip 192.168.16.38/30 This interface type is not supported in JUNOS 182:set interface ethernet0/2.25 route This interface type is not supported in JUNOS 183:set interface ethernet0/2.26 ip 192.168.2.113/28 This interface type is not supported in JUNOS 184:set interface ethernet0/2.26 route This interface type is not supported in JUNOS 185:set interface ethernet0/2.27 ip 10.50.28.1/28 This interface type is not supported in JUNOS 186:set interface ethernet0/2.27 route This interface type is not supported in JUNOS 187:set interface ethernet0/2.30 ip 10.50.22.206/28 This interface type is not supported in JUNOS 188:set interface ethernet0/2.30 route This interface type is not supported in JUNOS 189:set interface ethernet0/2.31 ip 10.50.22.222/28 This interface type is not supported in JUNOS 190:set interface ethernet0/2.31 route This interface type is not supported in JUNOS 191:set interface ethernet0/2.33:1 ip 10.50.22.226/30 Channelized interface is not supported in JUNOS 192:set interface ethernet0/2.33:1 route Channelized interface is not supported in JUNOS 193:set interface ethernet0/2.34:2 ip 10.50.22.230/30 Channelized interface is not supported in JUNOS 194:set interface ethernet0/2.34:2 route Channelized interface is not supported in JUNOS 195:set interface ethernet0/2.35 ip 10.50.22.235/29 This interface type is not supported in JUNOS 196:set interface ethernet0/2.35 nat This interface type is not supported in JUNOS 197:set interface ethernet0/2.26 mtu 1500 This interface type is not supported in JUNOS 198:unset interface vlan1 bypass-others-ipsec Line not recognized by S2J 199:unset interface vlan1 bypass-non-ip Line not recognized by S2J 200:set interface ethernet0/2.23 manage-ip 192.168.15.175 This interface type is not supported in JUNOS 201:unset interface vlan1 ip manageable Line not recognized by S2J 202:set interface ethernet0/0.31 ip manageable This interface type is not supported in JUNOS 203:set interface ethernet0/0.32 ip manageable This interface type is not supported in JUNOS 204:set interface ethernet0/0.33:1 ip manageable Channelized interface is not supported in JUNOS 205:set interface ethernet0/0.34:2 ip manageable Channelized interface is not supported in JUNOS 206:set interface ethernet0/0.35 ip manageable This interface type is not supported in JUNOS 207:set interface ethernet0/0.36 ip manageable This interface type is not supported in JUNOS 208:set interface ethernet0/1 ip manageable 209:set interface ethernet0/2.1 ip manageable This interface type is not supported in JUNOS 210:set interface ethernet0/2.2 ip manageable This interface type is not supported in JUNOS 211:set interface ethernet0/2.3 ip manageable This interface type is not supported in JUNOS 212:set interface ethernet0/2.21 ip manageable This interface type is not supported in JUNOS 213:set interface ethernet0/2.22 ip manageable This interface type is not supported in JUNOS 214:unset interface ethernet0/2.23 ip manageable This interface type is not supported in JUNOS 215:set interface ethernet0/2.24 ip manageable This interface type is not supported in JUNOS 216:set interface ethernet0/2.25 ip manageable This interface type is not supported in JUNOS 217:set interface ethernet0/2.26 ip manageable This interface type is not supported in JUNOS 218:set interface ethernet0/2.27 ip manageable This interface type is not supported in JUNOS 219:set interface ethernet0/2.30 ip manageable This interface type is not supported in JUNOS 220:set interface ethernet0/2.31 ip manageable This interface type is not supported in JUNOS 221:set interface ethernet0/2.33:1 ip manageable Channelized interface is not supported in JUNOS 222:set interface ethernet0/2.34:2 ip manageable Channelized interface is not supported in JUNOS 223:set interface ethernet0/2.35 ip manageable This interface type is not supported in JUNOS 224:set interface ethernet0/0.31 manage ping This interface type is not supported in JUNOS 225:set interface ethernet0/0.32 manage ping This interface type is not supported in JUNOS 226:set interface ethernet0/0.33:1 manage ping Channelized interface is not supported in JUNOS 227:set interface ethernet0/0.34:2 manage ping Channelized interface is not supported in JUNOS 228:set interface ethernet0/0.35 manage ping This interface type is not supported in JUNOS 229:set interface ethernet0/0.36 manage ping This interface type is not supported in JUNOS 230:set interface ethernet0/2.1 manage ping This interface type is not supported in JUNOS 231:set interface ethernet0/2.2 manage ping This interface type is not supported in JUNOS 232:set interface ethernet0/2.3 manage ping This interface type is not supported in JUNOS 233:set interface ethernet0/2.21 manage ping This interface type is not supported in JUNOS 234:set interface ethernet0/2.22 manage ping This interface type is not supported in JUNOS 235:set interface ethernet0/2.23 manage ping This interface type is not supported in JUNOS 236:set interface ethernet0/2.23 manage telnet This interface type is not supported in JUNOS 237:set interface ethernet0/2.23 manage web This interface type is not supported in JUNOS 238:set interface ethernet0/2.24 manage ping This interface type is not supported in JUNOS 239:set interface ethernet0/2.25 manage ping This interface type is not supported in JUNOS 240:set interface ethernet0/2.26 manage ping This interface type is not supported in JUNOS 241:set interface ethernet0/2.27 manage ping This interface type is not supported in JUNOS 242:set interface ethernet0/2.33:1 manage ping Channelized interface is not supported in JUNOS 243:set interface ethernet0/2.34:2 manage ping Channelized interface is not supported in JUNOS 244:set interface ethernet0/2.35 manage ping This interface type is not supported in JUNOS 245:unset flow no-tcp-seq-check TCP No Seq Check is disabled by default 246:unset flow tcp-syn-check 247:unset flow tcp-syn-bit-check Line not recognized by S2J 248:set flow reverse-route clear-text prefer Line not recognized by S2J 249:set flow reverse-route tunnel always Line not recognized by S2J 250:set console page 24 This Command is Operational Command in JUNOS 251:set hostname NIGCHFW01 252:set pki authority default scep mode "auto" This is not supported by S2J yet 253:set pki x509 default cert-path partial Line not yet supported by S2J 254:set nsrp cluster id 1 NSRP is not supported in this release 255:set nsrp cluster name NIGCHFW NSRP is not supported in this release 256:set nsrp rto-mirror sync NSRP is not supported in this release 257:set nsrp vsd-group id 0 priority 10 NSRP is not supported in this release 258:set nsrp vsd-group id 0 preempt NSRP is not supported in this release 259:set nsrp vsd-group id 1 priority 10 NSRP is not supported in this release 260:set nsrp vsd-group id 1 preempt NSRP is not supported in this release 261:set nsrp vsd-group id 2 priority 100 NSRP is not supported in this release 262:set nsrp vsd-group id 2 mode ineligible Line not recognized by S2J 263:set nsrp arp 5 NSRP is not supported in this release 264:set nsrp monitor interface ethernet0/1 NSRP is not supported in this release 265:set nsrp monitor interface ethernet0/2 NSRP is not supported in this release 266:set nsrp monitor interface ethernet0/0 NSRP is not supported in this release 267:set address "CH_Admin-sz" "CCN.148" 10.50.20.148 255.255.255.255 268:set address "CH_Admin-sz" "CH_ADM" 192.168.16.0 255.255.255.224 269:set address "CH_Admin-sz" "CH_ADM_1" 10.50.20.128 255.255.255.192 270:set address "CH_Admin-sz" "CRS BAIE" 192.168.16.15 255.255.255.255 271:set address "CH_Admin-sz" "CRS SERVER" 192.168.16.14 255.255.255.255 272:set address "CH_Admin-sz" "HXC" 192.168.15.120 255.255.255.255 273:set address "CH_Admin-sz" "MINSAT" 192.168.16.1 255.255.255.255 274:set address "CH_Admin-sz" "MINSAT CS5" 10.50.20.129 255.255.255.255 275:set address "CH_Access-sz" "10.50.21.65/32" 10.50.21.65 255.255.255.255 Route interface cannot be null. Please define the interface. 276:set address "CH_Access-sz" "192.168.142.192/27" 192.168.142.192 255.255.255.224 277:set address "CH_Access-sz" "192.168.142.224/29" 192.168.142.224 255.255.255.248 278:set address "CH_Access-sz" "192.168.142.232/29" 192.168.142.232 255.255.255.248 279:set address "CH_Access-sz" "192.168.142.240/29" 192.168.142.240 255.255.255.248 280:set address "CH_Access-sz" "192.168.15.1/32" 192.168.15.1 255.255.255.255 281:set address "CH_Access-sz" "CCN Diameter VIP" 192.168.16.42 255.255.255.252 Invalid IP Address.Not accepted in Junos. Host IP should have /32 or 255.255.255.255 as mask. 282:set address "CH_Access-sz" "CCN IO" 192.168.15.200 255.255.255.248 Route interface cannot be null. Please define the interface. 283:set address "CH_Access-sz" "CCN VIPs" 192.168.16.40 255.255.255.252 284:set address "CH_Access-sz" "CCN2_IO" 10.50.21.144 255.255.255.240 Route interface cannot be null. Please define the interface. 285:set address "CH_Access-sz" "CCN2_OAM_VIP" 10.50.21.65 255.255.255.255 Route interface cannot be null. Please define the interface. 286:set address "CH_Access-sz" "CCN3_DIA_VIP" 10.50.21.2 255.255.255.255 Route interface cannot be null. Please define the interface. 287:set address "CH_Access-sz" "CCN3_IO" 10.50.21.176 255.255.255.240 Route interface cannot be null. Please define the interface. 288:set address "CH_Access-sz" "CCN3_OAM_VIP" 10.50.21.66 255.255.255.255 Route interface cannot be null. Please define the interface. 289:set address "CH_Access-sz" "CCN4_DIA_VIP" 10.50.21.3 255.255.255.255 Route interface cannot be null. Please define the interface. 290:set address "CH_Access-sz" "CCN4_IO" 10.50.21.208 255.255.255.240 Route interface cannot be null. Please define the interface. 291:set address "CH_Access-sz" "CCN4_OAM_VIP" 10.50.21.67 255.255.255.255 Route interface cannot be null. Please define the interface. 292:set address "CH_Access-sz" "CH_ACC" 192.168.15.160 255.255.255.224 293:set address "CH_Access-sz" "CH_ACC_INT" 192.168.16.32 255.255.255.252 294:set address "CH_Access-sz" "Core_SS7_l" 10.130.10.0 255.255.255.0 Route interface cannot be null. Please define the interface. 295:set address "CH_Access-sz" "Core_SS7_r" 10.130.11.0 255.255.255.0 Route interface cannot be null. Please define the interface. 296:set address "CH_Access-sz" "CSC_VIP" 192.168.16.36 255.255.255.252 297:set address "CH_Access-sz" "EMA" 192.168.15.180 255.255.255.255 298:set address "CH_Access-sz" "EMM" 192.168.15.164 255.255.255.255 299:set address "CH_Access-sz" "NTP_2" 192.168.15.186 255.255.255.255 300:set address "CH_Access-sz" "Online_Gateway" 192.168.15.173 255.255.255.255 301:set address "CH_Access-sz" "PSL FS" 192.168.15.224 255.255.255.248 Route interface cannot be null. Please define the interface. 302:set address "CH_Access-sz" "PSL IO" 192.168.15.216 255.255.255.248 Route interface cannot be null. Please define the interface. 303:set address "CH_Access-sz" "PSL Vips" 192.168.16.44 255.255.255.252 304:set address "CH_Access-sz" "SVR_SQL" 192.168.15.179 255.255.255.255 305:set address "CH_Access-sz" "TSP 1" 172.16.0.0 255.255.255.0 306:set address "CH_Access-sz" "TSP 2" 172.16.1.0 255.255.255.0 307:set address "CH_Internal-sz" "10.50.20.129/32" 10.50.20.129 255.255.255.255 308:set address "CH_Internal-sz" "192.168.142.0/26" 192.168.142.0 255.255.255.192 309:set address "CH_Internal-sz" "192.168.142.128/26" 192.168.142.128 255.255.255.192 310:set address "CH_Internal-sz" "192.168.15.0/24" 192.168.15.0 255.255.255.0 311:set address "CH_Internal-sz" "AIR3" 10.50.20.11 255.255.255.255 312:set address "CH_Internal-sz" "AIR4" 10.50.20.204 255.255.255.255 313:set address "CH_Internal-sz" "CH_INT" 192.168.15.64 255.255.255.192 314:set address "CH_Internal-sz" "CH_INT_1" 10.50.20.0 255.255.255.128 315:set address "CH_Internal-sz" "CH_INT_IVR" 192.168.15.0 255.255.255.224 316:set address "CH_Internal-sz" "CS5" 10.50.20.0 255.255.255.128 317:set address "CH_Internal-sz" "FTP_BI" 192.168.15.165 255.255.255.255 318:set address "CH_Internal-sz" "LUVA VIP1" 192.168.15.67 255.255.255.192 Invalid IP Address.Not accepted in Junos. Host IP should have /32 or 255.255.255.255 as mask. 319:set address "CH_Internal-sz" "LUVA VIP2" 192.168.15.68 255.255.255.192 Invalid IP Address.Not accepted in Junos. Host IP should have /32 or 255.255.255.255 as mask. 320:set address "CH_Internal-sz" "LUVA VIP3" 192.168.15.65 255.255.255.255 321:set address "CH_Internal-sz" "new-SDP1" 10.50.20.1 255.255.255.255 322:set address "CH_Internal-sz" "NEW-SDP2" 10.50.20.2 255.255.255.255 323:set address "CH_Internal-sz" "NIGEMA02_OM" 10.50.22.208 255.255.255.240 324:set address "CH_Internal-sz" "NIGEMA02_Traffic" 10.50.22.192 255.255.255.240 325:set address "CH_Internal-sz" "NTP_2" 192.168.15.186 255.255.255.255 326:set address "CH_Internal-sz" "SAE_Primary" 192.168.15.120 255.255.255.255 327:set address "CH_Internal-sz" "SDP VIP" 192.168.15.77 255.255.255.192 Invalid IP Address.Not accepted in Junos. Host IP should have /32 or 255.255.255.255 as mask. 328:set address "CH_Internal-sz" "SDP2_VIP" 10.50.20.3 255.255.255.255 329:set address "CH_Internal-sz" "SDP3_VIP" 10.50.20.6 255.255.255.255 330:set address "CH_Internal-sz" "VS1A" 10.50.20.7 255.255.255.255 331:set address "CH_Internal-sz" "VS1B" 10.50.20.9 255.255.255.255 332:set address "CN_OM-sz" "CHAR" 182.168.16.48 255.255.255.248 333:set address "CH_OM-sz" "10.48.11.200/32" 10.48.11.200 255.255.255.255 334:set address "CH_OM-sz" "10.48.11.39" 10.48.11.39 255.255.255.255 335:set address "CH_OM-sz" "172.16.2.240/32" 172.16.2.240 255.255.255.255 336:set address "CH_OM-sz" "ACS01A" 10.50.12.2 255.255.255.255 337:set address "CH_OM-sz" "ACS01B" 10.50.12.3 255.255.255.255 338:set address "CH_OM-sz" "ACSTEST" 10.50.12.20 255.255.255.255 339:set address "CH_OM-sz" "ACSvirtual" 10.50.12.4 255.255.255.255 340:set address "CH_OM-sz" "Admin_Network" 192.168.6.0 255.255.255.0 341:set address "CH_OM-sz" "admin_nw2" 10.48.2.0 255.255.255.0 342:set address "CH_OM-sz" "admin_nw3" 10.48.3.0 255.255.255.0 343:set address "CH_OM-sz" "AGENCE GADAFAWA" 10.48.8.0 255.255.255.0 344:set address "CH_OM-sz" "AGENCE KONNI" 10.49.13.0 255.255.255.0 345:set address "CH_OM-sz" "AGENCE TILLABERY" 10.49.14.0 255.255.255.0 346:set address "CH_OM-sz" "AGENCE_AGADEZ" 10.49.9.0 255.255.255.0 347:set address "CH_OM-sz" "AGENCE_MARADI" 10.49.8.0 255.255.255.0 348:set address "CH_OM-sz" "AGENCE_SIEGE" 10.48.6.0 255.255.255.0 349:set address "CH_OM-sz" "AGENCE_TAHOUA" 10.49.6.0 255.255.255.0 350:set address "CH_OM-sz" "AGENCE_TERRAIN_MUSUL1" 10.48.7.0 255.255.255.0 351:set address "CH_OM-sz" "AGENCE_TERRAIN_MUSUL2" 10.48.23.0 255.255.255.0 352:set address "CH_OM-sz" "AGENCE_ZINDER" 10.49.7.0 255.255.255.0 353:set address "CH_OM-sz" "AIRTIME_IP" 10.0.128.1 255.255.255.255 354:set address "CH_OM-sz" "ANNEXE NW" 10.48.0.0 255.255.255.0 355:set address "CH_OM-sz" "APN_STAFF" 172.20.1.0 255.255.255.0 356:set address "CH_OM-sz" "BILLING" 192.168.6.44 255.255.255.255 357:set address "CH_OM-sz" "BILLING_11" 10.48.11.44 255.255.255.255 358:set address "CH_OM-sz" "Billing_Network" 192.168.14.0 255.255.255.0 359:set address "CH_OM-sz" "BILLS SERVER" 10.48.11.38 255.255.255.255 360:set address "CH_OM-sz" "CARES" 10.49.10.23 255.255.255.255 361:set address "CH_OM-sz" "CARES 1" 10.49.10.23 255.255.255.255 362:set address "CH_OM-sz" "CARES 2" 10.49.10.27 255.255.255.255 363:set address "CH_OM-sz" "CARES-Test" 10.49.10.24 255.255.255.255 364:set address "CH_OM-sz" "Cares-virtuel" 10.49.10.26 255.255.255.255 365:set address "CH_OM-sz" "CGSN_Gom_vips" 172.16.2.128 255.255.255.224 366:set address "CH_OM-sz" "CONVIVA" 10.48.14.21 255.255.255.255 367:set address "CH_OM-sz" "Core_Network" 192.168.8.0 255.255.255.0 368:set address "CH_OM-sz" "CRBT_NODE1" 10.48.14.21 255.255.255.255 369:set address "CH_OM-sz" "CRBT_NODE2" 10.48.14.22 255.255.255.255 370:set address "CH_OM-sz" "CRBT_NODE3" 10.48.14.23 255.255.255.255 371:set address "CH_OM-sz" "CRBT_NODE4" 10.48.14.24 255.255.255.255 372:set address "CH_OM-sz" "Cust_Care_Network" 192.168.7.0 255.255.255.0 373:set address "CH_OM-sz" "Customer_LAN_4" 10.48.1.0 255.255.255.0 374:set address "CH_OM-sz" "DCM_INTEC" 10.49.4.0 255.255.255.0 375:set address "CH_OM-sz" "DCM_NETWORK" 10.48.5.0 255.255.255.0 376:set address "CH_OM-sz" "DNS1-DSI" 10.48.11.209 255.255.255.255 377:set address "CH_OM-sz" "DNS2-DSI" 10.48.11.200 255.255.255.255 378:set address "CH_OM-sz" "ERICSSON_MSDP" 172.18.5.0 255.255.255.0 379:set address "CH_OM-sz" "Ericsson_Network" 192.168.10.0 255.255.255.0 380:set address "CH_OM-sz" "ERP" 10.49.10.21 255.255.255.255 381:set address "CH_OM-sz" "FLOOZ_TEST" 10.48.11.52 255.255.255.255 382:set address "CH_OM-sz" "FW ASA" 192.168.40.0 255.255.255.252 383:set address "CH_OM-sz" "Globitel" 10.48.19.4 255.255.255.255 384:set address "CH_OM-sz" "GPTO_STAT" 192.168.4.46 255.255.255.255 385:set address "CH_OM-sz" "GPTO_STAT2" 192.168.6.46 255.255.255.255 386:set address "CH_OM-sz" "hlr" 192.168.8.5 255.255.255.255 387:set address "CH_OM-sz" "HLR_NA" 192.168.8.15 255.255.255.255 388:set address "CH_OM-sz" "HLR_NB" 192.168.8.14 255.255.255.255 389:set address "CH_OM-sz" "HLR_R13" 192.168.8.16 255.255.255.255 390:set address "CH_OM-sz" "hlrA" 192.168.8.3 255.255.255.255 391:set address "CH_OM-sz" "hlrB" 192.168.8.4 255.255.255.255 392:set address "CH_OM-sz" "Identification" 10.48.11.39 255.255.255.255 393:set address "CH_OM-sz" "identification test" 10.48.11.215 255.255.255.255 394:set address "CH_OM-sz" "IME_BCK" 10.49.10.19 255.255.255.255 395:set address "CH_OM-sz" "INTEC_MEDIATION" 10.49.10.18 255.255.255.255 396:set address "CH_OM-sz" "INTEC_MEDIATION2" 10.48.11.40 255.255.255.255 397:set address "CH_OM-sz" "intec_nikira" 10.177.16.0 255.255.255.0 398:set address "CH_OM-sz" "IntMaourey" 10.48.22.0 255.255.255.0 399:set address "CH_OM-sz" "IP_PUB_AIR_TMP" 41.212.101.127 255.255.255.255 400:set address "CH_OM-sz" "LMS" 10.177.32.52 255.255.255.255 401:set address "CH_OM-sz" "LMS-V1" 10.177.32.51 255.255.255.255 402:set address "CH_OM-sz" "LMS-V2" 10.177.32.50 255.255.255.255 403:set address "CH_OM-sz" "LMS-V3" 10.170.53.15 255.255.255.255 404:set address "CH_OM-sz" "MGW1_MOOVBJ" 10.18.38.5 255.255.255.255 405:set address "CH_OM-sz" "MGW1_MOOVIC" 10.172.34.12 255.255.255.252 406:set address "CH_OM-sz" "MGW1_MOOVTG" 10.82.22.2 255.255.255.255 407:set address "CH_OM-sz" "MGW2_MOOVBJ" 10.18.38.6 255.255.255.255 408:set address "CH_OM-sz" "MGW2_MOOVTG" 10.82.22.3 255.255.255.255 409:set address "CH_OM-sz" "MGWs_BJ" 10.18.38.0 255.255.255.248 410:set address "CH_OM-sz" "MGWs_MOOVGA" 10.35.8.0 255.255.255.240 411:set address "CH_OM-sz" "MGWs_MOOVIC" 10.172.34.16 255.255.255.252 412:set address "CH_OM-sz" "MIEP1" 10.172.11.17 255.255.255.255 413:set address "CH_OM-sz" "MIEP2" 10.172.10.17 255.255.255.255 414:set address "CH_OM-sz" "MMG" 10.177.32.111 255.255.255.255 415:set address "CH_OM-sz" "MMG2" 10.177.32.105 255.255.255.255 416:set address "CH_OM-sz" "MOBILERA_SERVER" 192.168.100.5 255.255.255.255 417:set address "CH_OM-sz" "monitoring" 10.48.11.82 255.255.255.255 418:set address "CH_OM-sz" "MSC2_TG" 10.86.0.168 255.255.255.248 419:set address "CH_OM-sz" "Msc_MOOVGA1" 10.35.7.2 255.255.255.255 420:set address "CH_OM-sz" "Msc_MOOVGA2" 10.35.7.66 255.255.255.255 421:set address "CH_OM-sz" "MSC_TG" 10.86.0.160 255.255.255.248 422:set address "CH_OM-sz" "MSCs_MOOVGA_NEW" 10.41.0.0 255.255.255.0 423:set address "CH_OM-sz" "MSS1_MOOVTG" 10.86.0.162 255.255.255.255 424:set address "CH_OM-sz" "MSS2_MOOVTG" 10.86.0.163 255.255.255.255 425:set address "CH_OM-sz" "MSS3_MOOVTG" 10.86.0.170 255.255.255.255 426:set address "CH_OM-sz" "MSS4_MOOVTG" 10.86.0.171 255.255.255.255 427:set address "CH_OM-sz" "MSS_MOOVBJ" 10.18.63.0 255.255.255.0 428:set address "CH_OM-sz" "NEW CALL-CENTER" 10.48.20.0 255.255.255.0 429:set address "CH_OM-sz" "New_BI" 10.48.11.54 255.255.255.255 430:set address "CH_OM-sz" "NewBBSrv" 10.48.11.80 255.255.255.255 431:set address "CH_OM-sz" "NOC_Network" 192.168.11.0 255.255.255.0 432:set address "CH_OM-sz" "NSS NW" 192.168.8.0 255.255.255.0 433:set address "CH_OM-sz" "NTP SVR" 172.16.2.12 255.255.255.255 434:set address "CH_OM-sz" "OAM_PPS1" 172.25.1.17 255.255.255.255 435:set address "CH_OM-sz" "OAM_PPS2" 172.25.1.18 255.255.255.255 436:set address "CH_OM-sz" "OPENCODE" 10.48.14.0 255.255.255.0 437:set address "CH_OM-sz" "opencode1" 10.48.18.106 255.255.255.255 438:set address "CH_OM-sz" "opencode2" 10.48.18.108 255.255.255.255 439:set address "CH_OM-sz" "OPENCODE_S1" 10.48.18.106 255.255.255.255 440:set address "CH_OM-sz" "OPENCODE_S2" 10.48.18.108 255.255.255.255 441:set address "CH_OM-sz" "OPENCODE_S3" 10.48.18.111 255.255.255.255 442:set address "CH_OM-sz" "OPENCODE_S4" 10.48.18.113 255.255.255.255 443:set address "CH_OM-sz" "OPENCODE_S5" 10.48.18.110 255.255.255.255 444:set address "CH_OM-sz" "oss" 10.50.24.1 255.255.255.252 Invalid IP Address.Not accepted in Junos. Host IP should have /32 or 255.255.255.255 as mask. 445:set address "CH_OM-sz" "oss2" 10.50.24.98 255.255.255.255 446:set address "CH_OM-sz" "OSS3" 10.50.24.2 255.255.255.255 447:set address "CH_OM-sz" "OSS4" 10.50.24.8 255.255.255.255 448:set address "CH_OM-sz" "PACKETFENCE" 10.48.11.36 255.255.255.255 449:set address "CH_OM-sz" "Paie" 10.48.11.28 255.255.255.255 450:set address "CH_OM-sz" "PEER-LMS" 41.191.68.65 255.255.255.255 451:set address "CH_OM-sz" "PRESTIGE" 10.177.32.0 255.255.255.0 452:set address "CH_OM-sz" "PROXYCOM" 20.48.23.10 255.255.255.255 453:set address "CH_OM-sz" "QOS INTERNATIONAL" 10.49.10.21 255.255.255.255 454:set address "CH_OM-sz" "RDC" 10.48.1.0 255.255.255.0 455:set address "CH_OM-sz" "REPORTING" 192.168.6.41 255.255.255.255 456:set address "CH_OM-sz" "reseau_asa" 192.168.40.0 255.255.255.252 457:set address "CH_OM-sz" "RESEAU_SAUVEGARDE" 10.48.17.0 255.255.255.0 458:set address "CH_OM-sz" "ROUTEUR CARES" 10.49.253.24 255.255.255.255 459:set address "CH_OM-sz" "ROUTEUR TELEPIN" 10.20.10.0 255.255.255.0 460:set address "CH_OM-sz" "routeur_lan" 192.168.4.249 255.255.255.255 461:set address "CH_OM-sz" "rsg" 192.168.8.7 255.255.255.255 462:set address "CH_OM-sz" "SALLE_TECHNIQUE" 10.48.21.0 255.255.255.0 463:set address "CH_OM-sz" "SAUVE-RESEAU" 10.48.11.30 255.255.255.255 464:set address "CH_OM-sz" "SERVEUR VAS IT" 10.48.11.95 255.255.255.255 465:set address "CH_OM-sz" "Service_Network" 192.168.13.0 255.255.255.0 466:set address "CH_OM-sz" "SIG_MOOVIC" 10.172.49.0 255.255.255.240 467:set address "CH_OM-sz" "SMSC" 193.220.181.186 255.255.255.255 468:set address "CH_OM-sz" "smsc 2" 192.168.5.15 255.255.255.255 469:set address "CH_OM-sz" "SMSC_NEW" 10.50.10.3 255.255.255.255 470:set address "CH_OM-sz" "SRV-Gdigital" 10.48.2.10 255.255.255.255 471:set address "CH_OM-sz" "Srv-TLC-App1" 10.48.11.63 255.255.255.255 472:set address "CH_OM-sz" "Srv-TLC-App2" 10.48.11.64 255.255.255.255 473:set address "CH_OM-sz" "Srv-TLC-App3" 10.48.11.65 255.255.255.255 474:set address "CH_OM-sz" "SSG_Host" 192.168.10.7 255.255.255.255 475:set address "CH_OM-sz" "SSG_NEW" 10.57.20.2 255.255.255.252 Invalid IP Address.Not accepted in Junos. Host IP should have /32 or 255.255.255.255 as mask. 476:set address "CH_OM-sz" "support_sun" 10.48.1.5 255.255.255.255 477:set address "CH_OM-sz" "SVA" 192.168.6.143 255.255.255.255 478:set address "CH_OM-sz" "TELEPIN-Algeria" 80.246.3.10 255.255.255.255 479:set address "CH_OM-sz" "TELEPIN-Canada" 67.210.160.242 255.255.255.255 480:set address "CH_OM-sz" "TELEPIN-Egypt" 82.201.195.248 255.255.255.255 481:set address "CH_OM-sz" "TELEPIN-Egypt2" 217.52.30.49 255.255.255.255 482:set address "CH_OM-sz" "TILIA/SMS_FACEBOOK" 203.194.142.37 255.255.255.255 483:set address "CH_OM-sz" "TLC-APP1" 10.48.11.63 255.255.255.255 484:set address "CH_OM-sz" "TLC-APP2" 10.48.11.64 255.255.255.255 485:set address "CH_OM-sz" "TLC-APP3" 10.48.11.65 255.255.255.255 486:set address "CH_OM-sz" "TLC-TEST" 10.48.11.52 255.255.255.255 487:set address "CH_OM-sz" "Transmission_Network" 192.168.9.0 255.255.255.0 488:set address "CH_OM-sz" "VAS SERVER" 192.168.6.143 255.255.255.255 489:set address "CH_OM-sz" "VAS_Network" 192.168.12.0 255.255.255.0 490:set address "CH_OM-sz" "VPNMiniagence" 10.49.3.32 255.255.255.224 491:set address "TELEPIN" "TELEPIN-NW" 192.168.2.0 255.255.255.0 Route interface cannot be null. Please define the interface. 492:set address "TELEPIN" "TELEPIN_1" 192.168.2.1 255.255.255.255 493:set address "TELEPIN" "TELEPIN_2" 192.168.2.11 255.255.255.255 494:set address "TELEPIN" "TELEPIN_PROXY" 192.168.2.85 255.255.255.255 495:set address "CHAR_OM-sz" "AIR_202" 10.50.20.202 255.255.255.255 496:set address "CHAR_OM-sz" "AIR_2B" 10.50.20.204 255.255.255.255 497:set address "CHAR_OM-sz" "AIR_TMP" 10.50.20.202 255.255.255.255 498:set address "CHAR_OM-sz" "Charging_OM" 10.50.20.192 255.255.255.192 499:set address "MGW_TRAF-SZ" "NeMGW_TRAF" 10.50.28.0 255.255.255.240 500:set address "MGW_TRAF-SZ" "NEMSS1" 10.130.10.5 255.255.255.255 501:set address "MGW_TRAF-SZ" "NEMSS2" 10.130.11.5 255.255.255.255 502:set address "SS7_CH_1-sz" "SCTP_INT_1" 10.50.22.0 255.255.255.192 Route interface cannot be null. Please define the interface. 503:set address "SS7_CH_1-sz" "SS7_CCN_VIPs_1-Net" 10.50.22.128 255.255.255.224 Route interface cannot be null. Please define the interface. 504:set address "SS7_CH_2-sz" "SCTP_INT_2" 10.50.22.64 255.255.255.192 Route interface cannot be null. Please define the interface. 505:set address "SS7_CH_2-sz" "SS7_CCN_VIPs_2-Net" 10.50.22.160 255.255.255.224 Route interface cannot be null. Please define the interface. 506:set address "SCTP_CH_1-sz" "BC1_SIG" 10.55.4.0 255.255.255.240 Route interface cannot be null. Please define the interface. 507:set address "SCTP_CH_1-sz" "BC1_SIG1" 10.55.4.0 255.255.255.248 Route interface cannot be null. Please define the interface. 508:set address "SCTP_CH_1-sz" "CN-SS7_VIP" 10.55.0.152 255.255.255.248 Route interface cannot be null. Please define the interface. 509:set address "SCTP_CH_1-sz" "CN_SS7_SGSN1_1" 10.55.0.136 255.255.255.248 Route interface cannot be null. Please define the interface. 510:set address "SCTP_CH_1-sz" "CN_SS7_SGSN1_2" 10.55.0.144 255.255.255.248 Route interface cannot be null. Please define the interface. 511:set address "SCTP_CH_2-sz" "BC1_SIG" 10.55.4.0 255.255.255.240 Route interface cannot be null. Please define the interface. 512:set address "SCTP_CH_2-sz" "BC1_SIG2" 10.55.4.8 255.255.255.248 Route interface cannot be null. Please define the interface. 513:set address "SCTP_CH_2-sz" "CN-SS7_VIP" 10.55.0.152 255.255.255.248 Route interface cannot be null. Please define the interface. 514:set address "SCTP_CH_2-sz" "CN_SS7_SGSN1_1" 10.55.0.136 255.255.255.248 Route interface cannot be null. Please define the interface. 515:set address "SCTP_CH_2-sz" "CN_SS7_SGSN1_2" 10.55.0.144 255.255.255.248 Route interface cannot be null. Please define the interface. 516:set address "OM_INT-sz" "charging_network" 10.50.20.0 255.255.252.0 Route interface cannot be null. Please define the interface. 517:set address "OM_EXT-sz" "CBC_NTP_1" 10.55.48.176 255.255.255.252 Route interface cannot be null. Please define the interface. 518:set address "OM_EXT-sz" "CBC_NTP_2" 10.55.48.180 255.255.255.252 Route interface cannot be null. Please define the interface. 519:set address "MGW_EXT-sz" "Maradi_media_cn" 10.56.64.0 255.255.255.240 Route interface cannot be null. Please define the interface. 520:set address "MGW_EXT-sz" "media_cn_1" 10.55.64.0 255.255.255.240 Route interface cannot be null. Please define the interface. 521:set group address "CH_Access-sz" "Core_ss7_NiG" 522:set group address "CH_Access-sz" "Core_ss7_NiG" add "Core_SS7_l" 523:set group address "CH_Access-sz" "Core_ss7_NiG" add "Core_SS7_r" 524:set group address "CH_Internal-sz" "AIR" 525:set group address "CH_Internal-sz" "AIR" add "AIR3" 526:set group address "CH_Internal-sz" "AIR" add "AIR4" 527:set group address "CH_Internal-sz" "LUVA VIPs" 528:set group address "CH_Internal-sz" "LUVA VIPs" add "LUVA VIP1" Member Definition for "LUVA VIP1" is missing or the member is not being converted. 529:set group address "CH_Internal-sz" "LUVA VIPs" add "LUVA VIP2" Member Definition for "LUVA VIP2" is missing or the member is not being converted. 530:set group address "CH_Internal-sz" "SDP_VIP" 531:set group address "CH_Internal-sz" "SDP_VIP" add "SDP VIP" Member Definition for "SDP VIP" is missing or the member is not being converted. 532:set group address "CH_Internal-sz" "SDP_VIP" add "SDP2_VIP" 533:set group address "CH_Internal-sz" "SDP_VIP" add "SDP3_VIP" 534:set group address "CN_OM-sz" "GGSN OM VIP" 535:set group address "CH_OM-sz" "AGENCES_INTERIEUR" 536:set group address "CH_OM-sz" "AGENCES_INTERIEUR" add "AGENCE KONNI" 537:set group address "CH_OM-sz" "AGENCES_INTERIEUR" add "AGENCE TILLABERY" 538:set group address "CH_OM-sz" "AGENCES_INTERIEUR" add "AGENCE_AGADEZ" 539:set group address "CH_OM-sz" "AGENCES_INTERIEUR" add "AGENCE_MARADI" 540:set group address "CH_OM-sz" "AGENCES_INTERIEUR" add "AGENCE_TAHOUA" 541:set group address "CH_OM-sz" "AGENCES_INTERIEUR" add "AGENCE_ZINDER" 542:set group address "CH_OM-sz" "AGENCES_NIAMEY" 543:set group address "CH_OM-sz" "AGENCES_NIAMEY" add "AGENCE GADAFAWA" 544:set group address "CH_OM-sz" "AGENCES_NIAMEY" add "AGENCE_SIEGE" 545:set group address "CH_OM-sz" "AGENCES_NIAMEY" add "AGENCE_TERRAIN_MUSUL1" 546:set group address "CH_OM-sz" "AGENCES_NIAMEY" add "AGENCE_TERRAIN_MUSUL2" 547:set group address "CH_OM-sz" "Core_ss7_NiG" 548:set group address "CH_OM-sz" "CRBT_RANGE" 549:set group address "CH_OM-sz" "CRBT_RANGE" add "CRBT_NODE1" 550:set group address "CH_OM-sz" "CRBT_RANGE" add "CRBT_NODE2" 551:set group address "CH_OM-sz" "CRBT_RANGE" add "CRBT_NODE3" 552:set group address "CH_OM-sz" "CRBT_RANGE" add "CRBT_NODE4" 553:set group address "CH_OM-sz" "hlrcluster" 554:set group address "CH_OM-sz" "hlrcluster" add "hlr" 555:set group address "CH_OM-sz" "hlrcluster" add "hlrA" 556:set group address "CH_OM-sz" "hlrcluster" add "hlrB" 557:set group address "CH_OM-sz" "INTEC" 558:set group address "CH_OM-sz" "INTEC" add "INTEC_MEDIATION" 559:set group address "CH_OM-sz" "INTEC" add "INTEC_MEDIATION2" 560:set group address "CH_OM-sz" "MGWs_MOOVBJ" 561:set group address "CH_OM-sz" "MGWs_MOOVBJ" add "MGW1_MOOVBJ" 562:set group address "CH_OM-sz" "MGWs_MOOVBJ" add "MGW2_MOOVBJ" 563:set group address "CH_OM-sz" "MGWs_MOOVTG" 564:set group address "CH_OM-sz" "MGWs_MOOVTG" add "MGW1_MOOVTG" 565:set group address "CH_OM-sz" "MGWs_MOOVTG" add "MGW2_MOOVTG" 566:set group address "CH_OM-sz" "Msc_MOOVGA" 567:set group address "CH_OM-sz" "Msc_MOOVGA" add "Msc_MOOVGA1" 568:set group address "CH_OM-sz" "Msc_MOOVGA" add "Msc_MOOVGA2" 569:set group address "CH_OM-sz" "Msc_MOOVGA" add "MSCs_MOOVGA_NEW" 570:set group address "CH_OM-sz" "MSSs_MOOVTG" 571:set group address "CH_OM-sz" "MSSs_MOOVTG" add "MSS1_MOOVTG" 572:set group address "CH_OM-sz" "MSSs_MOOVTG" add "MSS2_MOOVTG" 573:set group address "CH_OM-sz" "MSSs_MOOVTG" add "MSS3_MOOVTG" 574:set group address "CH_OM-sz" "MSSs_MOOVTG" add "MSS4_MOOVTG" 575:set group address "CH_OM-sz" "New_OSS" 576:set group address "CH_OM-sz" "New_OSS" add "OSS3" 577:set group address "CH_OM-sz" "New_OSS" add "OSS4" 578:set group address "CH_OM-sz" "OAM_PPS" 579:set group address "CH_OM-sz" "OAM_PPS" add "OAM_PPS1" 580:set group address "CH_OM-sz" "OAM_PPS" add "OAM_PPS2" 581:set group address "CH_OM-sz" "OPENCODE_S" 582:set group address "CH_OM-sz" "OPENCODE_S" add "OPENCODE_S1" 583:set group address "CH_OM-sz" "OPENCODE_S" add "OPENCODE_S2" 584:set group address "CH_OM-sz" "OPENCODE_S" add "OPENCODE_S3" 585:set group address "CH_OM-sz" "OPENCODE_S" add "OPENCODE_S4" 586:set group address "CH_OM-sz" "oss_group" 587:set group address "CH_OM-sz" "oss_group" add "oss" Member Definition for "oss" is missing or the member is not being converted. 588:set group address "CH_OM-sz" "oss_group" add "oss2" 589:set group address "CH_OM-sz" "OSS_NOC_Range" 590:set group address "CH_OM-sz" "OSS_NOC_Range" add "Admin_Network" 591:set group address "CH_OM-sz" "OSS_NOC_Range" add "hlr" 592:set group address "CH_OM-sz" "OSS_NOC_Range" add "NOC_Network" 593:set group address "CH_OM-sz" "OSS_NOC_Range" add "rsg" 594:set group address "CH_OM-sz" "SMSC_IP" 595:set group address "CH_OM-sz" "SMSC_IP" add "SMSC" 596:set group address "CH_OM-sz" "SMSC_IP" add "smsc 2" 597:set group address "CH_OM-sz" "TELEPIN-Public" 598:set group address "CH_OM-sz" "TELEPIN-Public" add "TELEPIN-Algeria" 599:set group address "CH_OM-sz" "TELEPIN-Public" add "TELEPIN-Canada" 600:set group address "CH_OM-sz" "TELEPIN-Public" add "TELEPIN-Egypt" 601:set group address "CH_OM-sz" "TELEPIN-Public" add "TELEPIN-Egypt2" 602:set group address "CH_OM-sz" "TLC-SRV" 603:set group address "CH_OM-sz" "TLC-SRV" add "Srv-TLC-App1" 604:set group address "CH_OM-sz" "TLC-SRV" add "Srv-TLC-App2" 605:set group address "CH_OM-sz" "TLC-SRV" add "Srv-TLC-App3" 606:set group address "CH_OM-sz" "TLC-SRV" add "TLC-TEST" 607:set group address "MGW_TRAF-SZ" "NEMSS_GROUP" 608:set group address "MGW_TRAF-SZ" "NEMSS_GROUP" add "NEMSS1" 609:set group address "MGW_TRAF-SZ" "NEMSS_GROUP" add "NEMSS2" 610:set group service "oss-ch-access" 611:set group service "oss-ch-access" add "ftp_20_21" 612:set group service "oss-ch-access" add "netbios-dgm" 613:set group service "oss-ch-access" add "netbios-ns" 614:set group service "oss-ch-access" add "netbios-ssn" 615:set group service "oss-ch-access" add "NTP" 616:set group service "oss-ch-access" add "PING" 617:set group service "oss-ch-access" add "pxm" 618:set group service "oss-ch-access" add "pxm1" 619:set group service "oss-ch-access" add "SNMP" 620:set group service "oss-ch-access" add "SSH" 621:set group service "oss-ch-access" add "TELNET" 622:set group service "oss-ch-access" add "TFTP" 623:set group service "ping_trace" 624:set group service "ping_trace" add "PING" 625:set group service "ping_trace" add "TRACEROUTE" 626:set group service "radiu" 627:set group service "radiu" add "LDAP" 628:set group service "radiu" add "radad" 629:set group service "radiu" add "radius-acct" 630:set group service "radiu" add "radius-auth" 631:set group service "unix_manage" 632:set group service "unix_manage" add "FTP" 633:set group service "unix_manage" add "ftp_20_21" 634:set group service "unix_manage" add "HTTP" 635:set group service "unix_manage" add "http_8080" 636:set group service "unix_manage" add "HTTPS" 637:set group service "unix_manage" add "SSH" 638:set group service "unix_manage" add "TELNET" 639:set group service "win_manage" 640:set group service "win_manage" add "ftp_20_21" 641:set group service "win_manage" add "HTTP" 642:set group service "win_manage" add "http_8080" 643:set group service "win_manage" add "HTTPS" 644:set group service "win_manage" add "SSH" 645:set group service "win_manage" add "TELNET" 646:set group service "win_manage" add "VNC" 647:set group service "win_manage" add "Windows-TS" 648:set group service "x-windows-ports" 649:set group service "x-windows-ports" add "X-Windows1" 650:set group service "x-windows-ports" add "X-Windows2" 651:set group service "x-windows-ports" add "X-Windows3" 652:set crypto-policy Line not recognized by S2J 653:exit 654:set ike respond-bad-spi 1 655:set ike ikev2 ike-sa-soft-lifetime 60 Line not recognized by S2J 656:unset ike ikeid-enumeration Line not recognized by S2J 657:unset ike dos-protection Line not recognized by S2J 658:unset ipsec access-session enable Line not recognized by S2J 659:set ipsec access-session maximum 5000 Line not recognized by S2J 660:set ipsec access-session upper-threshold 0 Line not recognized by S2J 661:set ipsec access-session lower-threshold 0 Line not recognized by S2J 662:set ipsec access-session dead-p2-sa-timeout 0 Line not recognized by S2J 663:unset ipsec access-session log-error Line not recognized by S2J 664:unset ipsec access-session info-exch-connected Line not recognized by S2J 665:unset ipsec access-session use-error-log Line not recognized by S2J 666:set vrouter "untrust-vr" 667:exit 668:set vrouter "trust-vr" 669:exit 670:set vrouter "siteinfra-vr" 671:exit 672:set vrouter "SS7_CH-vr" 673:exit 674:set vrouter "OM-vr" 675:exit 676:set url protocol websense Line not recognized by S2J 677:exit 678:set policy id 1 from "CH_Access-sz" to "CH_Internal-sz" "192.168.142.192/27" "SDP VIP" "ftp_20_21" permit 679:set policy id 1 680:set service "GTP" Application Definition for "GTP" is missing or application not being converted. 681:set service "rpc" 682:exit 683:set policy id 2 from "CH_Access-sz" to "CH_Internal-sz" "192.168.142.192/27" "LUVA VIPs" "DNS" permit 684:set policy id 2 685:exit 686:set policy id 3 from "CH_Access-sz" to "CH_Internal-sz" "192.168.142.224/29" "LUVA VIPs" "DNS" permit 687:set policy id 3 688:exit 689:set policy id 4 from "CH_Access-sz" to "CH_Internal-sz" "192.168.142.232/29" "LUVA VIPs" "DNS" permit 690:set policy id 4 691:exit 692:set policy id 5 from "CH_Access-sz" to "CH_Internal-sz" "192.168.142.240/29" "LUVA VIPs" "DNS" permit 693:set policy id 5 694:exit 695:set policy id 6 from "CH_Access-sz" to "CH_Admin-sz" "192.168.142.192/27" "CH_ADM" "ftp_20_21" permit log 696:set policy id 6 697:set service "GTP" Application Definition for "GTP" is missing or application not being converted. 698:set service "rpc" 699:exit 700:set policy id 7 from "CH_Internal-sz" to "CH_Access-sz" "192.168.142.0/26" "CH_ACC" "ftp_20_21" permit 701:set policy id 7 702:set service "GTP" Application Definition for "GTP" is missing or application not being converted. 703:set service "rpc" 704:exit 705:set policy id 8 from "CH_Internal-sz" to "CH_Access-sz" "192.168.142.128/26" "CH_ACC" "ftp_20_21" permit 706:set policy id 8 707:set service "GTP" Application Definition for "GTP" is missing or application not being converted. 708:set service "rpc" 709:exit 710:set policy id 9 from "CN_OM-sz" to "CH_Access-sz" "GGSN OM VIP" "CCN Diameter VIP" "Diameter" permit 711:set policy id 9 712:exit 713:set policy id 10 from "CH_OM-sz" to "CH_Access-sz" "OSS_NOC_Range" "Any" "ANY" permit 714:set policy id 10 715:exit 716:set policy id 283 from "CH_OM-sz" to "CH_Access-sz" "ERICSSON_MSDP" "Any" "ANY" permit log 717:set policy id 283 718:exit 719:set policy id 11 from "CN_OM-sz" to "CH_Access-sz" "CHAR" "CH_ACC" "ftp_20_21" permit 720:set policy id 11 721:set service "GTP" Application Definition for "GTP" is missing or application not being converted. 722:set service "rpc" 723:exit 724:set policy id 12 from "CH_Internal-sz" to "CH_Admin-sz" "Any" "Any" "ANY" permit 725:set policy id 12 726:exit 727:set policy id 13 from "CH_Admin-sz" to "CH_Internal-sz" "Any" "Any" "ANY" permit 728:set policy id 13 729:exit 730:set policy id 14 from "CH_Access-sz" to "CH_Internal-sz" "Any" "Any" "ANY" permit log 731:set policy id 14 732:exit 733:set policy id 15 from "CH_Internal-sz" to "CH_Access-sz" "Any" "Any" "ANY" permit 734:set policy id 15 735:exit 736:set policy id 16 from "CH_Admin-sz" to "CH_Access-sz" "Any" "Any" "ANY" permit log 737:set policy id 16 738:exit 739:set policy id 17 from "CH_Access-sz" to "CH_Admin-sz" "Any" "Any" "ANY" permit log 740:set policy id 17 741:exit 742:set policy id 18 from "CH_OM-sz" to "CH_Internal-sz" "OSS_NOC_Range" "Any" "ANY" permit 743:set policy id 18 744:exit 745:set policy id 19 from "CH_OM-sz" to "CH_Admin-sz" "OSS_NOC_Range" "Any" "ANY" permit log 746:set policy id 19 747:exit 748:set policy id 20 from "CH_Access-sz" to "CH_OM-sz" "Any" "OSS_NOC_Range" "TFTP" permit 749:set policy id 20 750:set service "ping_trace" 751:exit 752:set policy id 21 from "CH_Internal-sz" to "CH_OM-sz" "Any" "OSS_NOC_Range" "TELNET" permit 753:set policy id 21 754:set service "ping_trace" 755:exit 756:set policy id 22 from "CH_Admin-sz" to "CH_OM-sz" "Any" "OSS_NOC_Range" "ping_trace" permit 757:set policy id 22 758:exit 759:set policy id 23 from "CH_Internal-sz" to "CH_OM-sz" "SDP VIP" "hlr" "SDP-HLR" permit 760:set policy id 23 761:exit 762:set policy id 24 from "CH_Admin-sz" to "CH_OM-sz" "CH_ADM" "hlr" "ANY" permit 763:set policy id 24 764:exit 765:set policy id 25 from "CH_OM-sz" to "CH_Access-sz" "Admin_Network" "Any" "ANY" permit log 766:set policy id 25 767:set src-address "admin_nw2" 768:set src-address "admin_nw3" 769:set src-address "ANNEXE NW" 770:set src-address "ERICSSON_MSDP" 771:set src-address "oss" 772:set src-address "RDC" 773:set src-address "SALLE_TECHNIQUE" 774:set src-address "SSG_Host" 775:set src-address "support_sun" 776:set src-address "OAM_PPS" 777:exit 778:set policy id 26 from "CH_OM-sz" to "CH_Admin-sz" "Admin_Network" "Any" "ANY" permit 779:set policy id 26 780:set src-address "admin_nw2" 781:set src-address "admin_nw3" 782:set src-address "ERICSSON_MSDP" 783:set src-address "oss" 784:set src-address "RDC" 785:set src-address "SALLE_TECHNIQUE" 786:set src-address "SSG_NEW" 787:set src-address "support_sun" 788:set src-address "OAM_PPS" 789:exit 790:set policy id 27 from "CH_OM-sz" to "CH_Internal-sz" "Admin_Network" "Any" "ANY" permit log 791:set policy id 27 792:set src-address "admin_nw2" 793:set src-address "admin_nw3" 794:set src-address "ANNEXE NW" 795:set src-address "ERICSSON_MSDP" 796:set src-address "oss" 797:set src-address "RDC" 798:set src-address "SALLE_TECHNIQUE" 799:set src-address "SAUVE-RESEAU" 800:set src-address "support_sun" 801:set src-address "OAM_PPS" 802:exit 803:set policy id 28 from "CH_Internal-sz" to "CH_OM-sz" "Any" "oss" "SNMP" permit log The destination address "oss" is not defined in the CH_OM-sz zone 804:set policy id 28 Missing Policy data Or Policy has an error and not being converted. 805:set dst-address "OSS4" Missing Policy data Or Policy has an error and not being converted. 806:set service "ping_trace" Missing Policy data Or Policy has an error and not being converted. 807:exit 808:set policy id 29 from "CH_Admin-sz" to "CH_OM-sz" "Any" "oss" "SNMP" permit The destination address "oss" is not defined in the CH_OM-sz zone 809:set policy id 29 Missing Policy data Or Policy has an error and not being converted. 810:set service "ping_trace" Missing Policy data Or Policy has an error and not being converted. 811:exit 812:set policy id 30 from "CH_Access-sz" to "CH_OM-sz" "Any" "oss" "SNMP" permit The destination address "oss" is not defined in the CH_OM-sz zone 813:set policy id 30 Missing Policy data Or Policy has an error and not being converted. 814:set service "ping_trace" Missing Policy data Or Policy has an error and not being converted. 815:exit 816:set policy id 31 from "CH_Access-sz" to "CH_OM-sz" "CH_ACC" "hlrcluster" "ftp_20_21" permit 817:set policy id 31 818:set service "PING" 819:set service "TELNET" 820:exit 821:set policy id 32 from "CH_OM-sz" to "CH_Access-sz" "hlrcluster" "Any" "ftp_20_21" permit log 822:set policy id 32 823:set service "PING" 824:set service "TELNET" 825:exit 826:set policy id 33 from "CH_OM-sz" to "CH_Access-sz" "BILLING" "CH_ACC" "FTP" permit 827:set policy id 33 828:set service "PING" 829:set service "TELNET" 830:exit 831:set policy id 34 from "CH_Access-sz" to "CH_OM-sz" "CH_ACC" "BILLING" "FTP" permit 832:set policy id 34 833:set service "PING" 834:set service "TELNET" 835:exit 836:set policy id 35 from "CH_OM-sz" to "CH_Internal-sz" "SSG_Host" "CH_INT_IVR" "ANY" permit 837:set policy id 35 838:exit 839:set policy id 36 from "CH_Internal-sz" to "CH_OM-sz" "CH_INT_IVR" "SSG_Host" "ANY" permit 840:set policy id 36 841:exit 842:set policy id 37 from "CH_OM-sz" to "CH_Internal-sz" "SSG_Host" "CH_INT" "ANY" permit 843:set policy id 37 844:exit 845:set policy id 38 from "CH_Internal-sz" to "CH_OM-sz" "CH_INT" "SSG_Host" "ANY" permit 846:set policy id 38 847:exit 848:set policy id 40 from "CH_Access-sz" to "CH_OM-sz" "Any" "SSG_Host" "ANY" permit 849:set policy id 40 850:exit 851:set policy id 41 from "CH_OM-sz" to "CH_Admin-sz" "SSG_Host" "CH_ADM" "ANY" permit 852:set policy id 41 853:exit 854:set policy id 42 from "CH_Admin-sz" to "CH_OM-sz" "CH_ADM" "SSG_Host" "ANY" permit 855:set policy id 42 856:exit 857:set policy id 43 from "CH_Internal-sz" to "CH_OM-sz" "SAE_Primary" "SMSC" "ANY" permit 858:set policy id 43 859:exit 860:set policy id 44 from "CH_OM-sz" to "CH_Internal-sz" "Customer_LAN_4" "SAE_Primary" "ANY" permit 861:set policy id 44 862:exit 863:set policy id 45 from "CH_Internal-sz" to "CH_OM-sz" "SAE_Primary" "Customer_LAN_4" "ANY" permit 864:set policy id 45 865:exit 866:set policy id 46 name "EMM_CGSN" from "CH_Access-sz" to "CH_OM-sz" "EMM" "172.16.2.240/32" "ANY" permit 867:set policy id 46 868:exit 869:set policy id 47 from "CH_Access-sz" to "CH_OM-sz" "Online_Gateway" "CGSN_Gom_vips" "ANY" permit 870:set policy id 47 871:exit 872:set policy id 48 from "CH_Admin-sz" to "CH_OM-sz" "Any" "NTP SVR" "NTP" permit log 873:set policy id 48 874:set service "PING" 875:exit 876:set policy id 49 from "CH_Access-sz" to "CH_OM-sz" "Any" "NTP SVR" "NTP" permit 877:set policy id 49 878:set service "PING" 879:exit 880:set policy id 50 from "CH_Internal-sz" to "CH_OM-sz" "Any" "NTP SVR" "NTP" permit log 881:set policy id 50 882:set service "PING" 883:exit 884:set policy id 51 from "CH_OM-sz" to "CH_Admin-sz" "DCM_NETWORK" "MINSAT" "ANY" permit 885:set policy id 51 886:exit 887:set policy id 52 from "CH_Internal-sz" to "CH_OM-sz" "FTP_BI" "SMSC" "ANY" permit log 888:set policy id 52 889:exit 890:set policy id 53 from "TELEPIN" to "CH_Internal-sz" "TELEPIN-NW" "LUVA VIPs" "ANY" permit log 891:set policy id 53 892:exit 893:set policy id 54 from "CH_Internal-sz" to "TELEPIN" "LUVA VIPs" "TELEPIN-NW" "ANY" permit log 894:set policy id 54 895:exit 896:set policy id 55 from "TELEPIN" to "CH_OM-sz" "TELEPIN-NW" "SMSC" "ANY" permit log 897:set policy id 55 898:exit 899:set policy id 56 from "CH_OM-sz" to "TELEPIN" "SMSC" "TELEPIN-NW" "ANY" permit log 900:set policy id 56 901:exit 902:set policy id 57 from "CH_OM-sz" to "TELEPIN" "Admin_Network" "TELEPIN-NW" "ANY" permit 903:set policy id 57 904:set src-address "admin_nw2" 905:set src-address "admin_nw3" 906:set src-address "ERICSSON_MSDP" 907:set src-address "support_sun" 908:set src-address "OAM_PPS" 909:exit 910:set policy id 58 from "CH_OM-sz" to "TELEPIN" "TELEPIN-Public" "TELEPIN-NW" "ANY" permit log 911:set policy id 58 912:exit 913:set policy id 59 from "TELEPIN" to "CH_Access-sz" "TELEPIN-NW" "NTP_2" "NTP" permit log 914:set policy id 59 915:set service "PING" 916:exit 917:set policy id 60 from "CH_OM-sz" to "CH_Internal-sz" "smsc 2" "SAE_Primary" "ANY" permit 918:set policy id 60 919:exit 920:set policy id 61 from "CH_OM-sz" to "TELEPIN" "smsc 2" "TELEPIN-NW" "ANY" permit log 921:set policy id 61 922:exit 923:set policy id 62 from "CH_Internal-sz" to "CH_OM-sz" "SAE_Primary" "smsc 2" "ANY" permit 924:set policy id 62 925:exit 926:set policy id 63 from "TELEPIN" to "CH_OM-sz" "TELEPIN-NW" "smsc 2" "ANY" permit log 927:set policy id 63 928:exit 929:set policy id 64 from "CH_OM-sz" to "TELEPIN" "DCM_NETWORK" "TELEPIN-NW" "ANY" permit 930:set policy id 64 931:exit 932:set policy id 65 from "CH_OM-sz" to "CH_Internal-sz" "DCM_INTEC" "SAE_Primary" "ANY" permit log 933:set policy id 65 934:exit 935:set policy id 66 from "CH_OM-sz" to "CH_Admin-sz" "DCM_INTEC" "MINSAT" "ANY" permit log 936:set policy id 66 937:exit 938:set policy id 67 from "CH_OM-sz" to "TELEPIN" "FW ASA" "TELEPIN-NW" "ANY" permit log 939:set policy id 67 940:exit 941:set policy id 68 from "CH_OM-sz" to "CH_Internal-sz" "NSS NW" "NTP_2" "ANY" permit log 942:set policy id 68 943:exit 944:set policy id 69 from "CH_OM-sz" to "TELEPIN" "routeur_lan" "TELEPIN-NW" "ANY" permit 945:set policy id 69 946:exit 947:set policy id 70 from "CH_OM-sz" to "TELEPIN" "AGENCES_INTERIEUR" "TELEPIN-NW" "ANY" permit log 948:set policy id 70 949:exit 950:set policy id 71 from "CH_Access-sz" to "CH_OM-sz" "EMA" "HLR_R13" "ANY" permit 951:set policy id 71 952:exit 953:set policy id 72 from "CH_Access-sz" to "CH_OM-sz" "CCN2_OAM_VIP" "OSS_NOC_Range" "ANY" permit count 954:set policy id 72 955:exit 956:set policy id 73 from "CH_OM-sz" to "CH_Admin-sz" "AGENCES_INTERIEUR" "MINSAT" "ANY" permit 957:set policy id 73 958:exit 959:set policy id 74 from "CH_Access-sz" to "CH_OM-sz" "EMM" "intec_nikira" "ANY" permit 960:set policy id 74 961:exit 962:set policy id 75 from "CH_Access-sz" to "CH_OM-sz" "EMM" "smsc 2" "ANY" permit 963:set policy id 75 964:exit 965:set policy id 76 from "CH_Access-sz" to "CH_OM-sz" "EMM" "GPTO_STAT" "ANY" permit 966:set policy id 76 967:exit 968:set policy id 77 from "CH_Access-sz" to "CH_OM-sz" "EMM" "HLR_R13" "ANY" permit 969:set policy id 77 970:exit 971:set policy id 78 from "CH_Access-sz" to "CH_OM-sz" "SVR_SQL" "HLR_R13" "ANY" permit 972:set policy id 78 973:exit 974:set policy id 79 from "CH_OM-sz" to "TELEPIN" "APN_STAFF" "TELEPIN-NW" "ANY" permit log 975:set policy id 79 976:exit 977:set policy id 80 from "CH_OM-sz" to "CH_Admin-sz" "ANNEXE NW" "MINSAT" "ANY" permit 978:set policy id 80 979:exit 980:set policy id 81 from "CH_Admin-sz" to "CH_OM-sz" "MINSAT" "ANNEXE NW" "ANY" permit 981:set policy id 81 982:exit 983:set policy id 82 from "CH_OM-sz" to "CH_Admin-sz" "Customer_LAN_4" "MINSAT" "ANY" permit 984:set policy id 82 985:exit 986:set policy id 83 from "CH_OM-sz" to "TELEPIN" "ANNEXE NW" "TELEPIN-NW" "ANY" permit 987:set policy id 83 988:exit 989:set policy id 84 from "CH_OM-sz" to "CH_Internal-sz" "ANNEXE NW" "SAE_Primary" "ANY" permit 990:set policy id 84 991:exit 992:set policy id 85 from "CH_Access-sz" to "CH_OM-sz" "EMM" "GPTO_STAT2" "ANY" permit 993:set policy id 85 994:exit 995:set policy id 86 from "CH_OM-sz" to "TELEPIN" "ROUTEUR TELEPIN" "Any" "ANY" permit log 996:set policy id 86 997:exit 998:set policy id 88 from "CH_Access-sz" to "CH_OM-sz" "EMM" "REPORTING" "ANY" permit 999:set policy id 88 1000:exit 1001:set policy id 89 from "CH_Access-sz" to "CH_OM-sz" "EMM" "INTEC_MEDIATION" "ANY" permit 1002:set policy id 89 1003:exit 1004:set policy id 90 from "CH_OM-sz" to "CH_Admin-sz" "ROUTEUR CARES" "MINSAT" "ANY" permit 1005:set policy id 90 1006:exit 1007:set policy id 91 from "CH_OM-sz" to "CH_Access-sz" "ROUTEUR CARES" "EMA" "ANY" permit 1008:set policy id 91 1009:exit 1010:set policy id 92 from "CH_OM-sz" to "CH_Admin-sz" "INTEC_MEDIATION" "CRS SERVER" "ANY" permit log 1011:set policy id 92 1012:exit 1013:set policy id 93 from "CH_OM-sz" to "CH_Admin-sz" "CARES 1" "MINSAT" "ANY" permit log 1014:set policy id 93 1015:exit 1016:set policy id 94 from "CH_OM-sz" to "CH_Admin-sz" "CARES 2" "MINSAT" "ANY" permit 1017:set policy id 94 1018:exit 1019:set policy id 95 from "CH_OM-sz" to "CH_Access-sz" "CARES 1" "EMA" "ANY" permit 1020:set policy id 95 1021:exit 1022:set policy id 96 from "CH_OM-sz" to "CH_Access-sz" "CARES 2" "EMA" "ANY" permit 1023:set policy id 96 1024:exit 1025:set policy id 97 from "CH_OM-sz" to "CH_Access-sz" "CRBT_RANGE" "EMA" "ANY" permit 1026:set policy id 97 1027:exit 1028:set policy id 98 from "CH_OM-sz" to "CH_Access-sz" "CRBT_RANGE" "EMM" "ANY" permit 1029:set policy id 98 1030:exit 1031:set policy id 99 from "CH_OM-sz" to "CH_Internal-sz" "CRBT_RANGE" "AIR3" "ANY" permit 1032:set policy id 99 1033:set dst-address "AIR4" 1034:exit 1035:set policy id 100 from "CH_OM-sz" to "CH_Internal-sz" "ANNEXE NW" "LUVA VIPs" "ANY" permit 1036:set policy id 100 1037:exit 1038:set policy id 101 from "CH_Admin-sz" to "CH_OM-sz" "CRS SERVER" "OSS_NOC_Range" "ANY" permit 1039:set policy id 101 1040:exit 1041:set policy id 102 from "CH_Access-sz" to "TELEPIN" "EMM" "TELEPIN-NW" "ANY" permit 1042:set policy id 102 1043:exit 1044:set policy id 103 from "CH_OM-sz" to "CH_Admin-sz" "NEW CALL-CENTER" "MINSAT" "ANY" permit log 1045:set policy id 103 1046:exit 1047:set policy id 104 from "CH_OM-sz" to "CH_Internal-sz" "NEW CALL-CENTER" "SAE_Primary" "ANY" permit 1048:set policy id 104 1049:exit 1050:set policy id 105 from "CH_OM-sz" to "TELEPIN" "NEW CALL-CENTER" "TELEPIN-NW" "ANY" permit log 1051:set policy id 105 1052:exit 1053:set policy id 107 name "LMS" from "CH_OM-sz" to "CH_Admin-sz" "LMS" "MINSAT" "ANY" permit log 1054:set policy id 107 1055:exit 1056:set policy id 108 name "LMS-V1" from "CH_OM-sz" to "CH_Admin-sz" "LMS-V1" "MINSAT" "ANY" permit log 1057:set policy id 108 1058:exit 1059:set policy id 109 name "LMS-V2" from "CH_OM-sz" to "CH_Admin-sz" "LMS-V2" "MINSAT" "ANY" permit log 1060:set policy id 109 1061:exit 1062:set policy id 110 name "PEER-LMS" from "CH_OM-sz" to "CH_Admin-sz" "PEER-LMS" "MINSAT" "ANY" permit log 1063:set policy id 110 1064:exit 1065:set policy id 112 from "CH_OM-sz" to "TELEPIN" "RDC" "TELEPIN-NW" "ANY" permit log 1066:set policy id 112 1067:exit 1068:set policy id 113 from "CH_Access-sz" to "CH_OM-sz" "EMM" "QOS INTERNATIONAL" "ANY" permit 1069:set policy id 113 1070:exit 1071:set policy id 114 from "CH_Access-sz" to "CH_OM-sz" "EMM" "VAS SERVER" "ANY" permit 1072:set policy id 114 1073:exit 1074:set policy id 115 from "TELEPIN" to "CH_OM-sz" "TELEPIN-NW" "BILLS SERVER" "ANY" permit 1075:set policy id 115 1076:exit 1077:set policy id 116 from "CH_OM-sz" to "CH_Access-sz" "SAUVE-RESEAU" "CH_ACC" "ANY" permit log 1078:set policy id 116 1079:exit 1080:set policy id 122 name "ERP" from "CH_OM-sz" to "TELEPIN" "ERP" "TELEPIN-NW" "ANY" permit log 1081:set policy id 122 1082:exit 1083:set policy id 123 name "AGENCE_MARADI" from "CH_OM-sz" to "TELEPIN" "AGENCE_MARADI" "TELEPIN-NW" "ANY" permit log 1084:set policy id 123 1085:exit 1086:set policy id 124 name "OPENCODE_S1" from "CH_OM-sz" to "CH_Admin-sz" "OPENCODE_S1" "MINSAT" "ANY" permit log 1087:set policy id 124 1088:exit 1089:set policy id 125 name "OPENCODE_S2" from "CH_OM-sz" to "CH_Admin-sz" "OPENCODE_S2" "MINSAT" "ANY" permit log 1090:set policy id 125 1091:exit 1092:set policy id 126 name "OPENCODE_S3" from "CH_OM-sz" to "CH_Admin-sz" "OPENCODE_S3" "MINSAT" "ANY" permit log 1093:set policy id 126 1094:exit 1095:set policy id 127 name "OPENCODE_S4" from "CH_OM-sz" to "CH_Admin-sz" "OPENCODE_S4" "MINSAT" "ANY" permit log 1096:set policy id 127 1097:exit 1098:set policy id 128 name "CARES" from "CH_OM-sz" to "CH_Admin-sz" "CARES" "MINSAT" "ANY" permit log 1099:set policy id 128 1100:exit 1101:set policy id 129 from "CH_OM-sz" to "TELEPIN" "ANNEXE NW" "TELEPIN-NW" "ANY" permit 1102:set policy id 129 1103:exit 1104:set policy id 130 name "OPENCODE1" from "CH_OM-sz" to "CH_Internal-sz" "opencode1" "LUVA VIPs" "ANY" permit 1105:set policy id 130 1106:exit 1107:set policy id 131 name "OPENCODE2" from "CH_OM-sz" to "CH_Internal-sz" "opencode2" "LUVA VIPs" "ANY" permit 1108:set policy id 131 1109:exit 1110:set policy id 132 from "CH_OM-sz" to "CH_Access-sz" "opencode1" "EMA" "ANY" permit 1111:set policy id 132 1112:exit 1113:set policy id 133 from "CH_OM-sz" to "CH_Access-sz" "opencode2" "EMA" "ANY" permit 1114:set policy id 133 1115:exit 1116:set policy id 134 from "CH_OM-sz" to "CH_Access-sz" "OPENCODE_S3" "EMA" "ANY" permit 1117:set policy id 134 1118:exit 1119:set policy id 135 from "CH_OM-sz" to "CH_Access-sz" "OPENCODE_S4" "EMA" "ANY" permit 1120:set policy id 135 1121:exit 1122:set policy id 136 from "CH_OM-sz" to "CH_Internal-sz" "PACKETFENCE" "Any" "ANY" permit log 1123:set policy id 136 1124:exit 1125:set policy id 137 from "TELEPIN" to "CH_OM-sz" "TELEPIN-NW" "DNS1-DSI" "DNS" permit log 1126:set policy id 137 1127:set dst-address "DNS2-DSI" 1128:set service "ICMP-ANY" 1129:set log session-init Line not recognized by S2J 1130:exit 1131:set policy id 138 name "NAGIOS" from "CH_OM-sz" to "TELEPIN" "SAUVE-RESEAU" "TELEPIN-NW" "HTTPS" permit log 1132:set policy id 138 1133:set service "PING" 1134:set service "SSH" 1135:set service "TELNET" 1136:set service "TFTP" 1137:exit 1138:set policy id 139 from "CH_OM-sz" to "CH_Access-sz" "PACKETFENCE" "CH_ACC" "ANY" permit log 1139:set policy id 139 1140:set src-address "RDC" 1141:exit 1142:set policy id 140 name "Administration CCN" from "CH_OM-sz" to "CH_Access-sz" "PACKETFENCE" "CH_ACC" "ANY" permit log 1143:set policy id 140 1144:set src-address "RDC" 1145:exit 1146:set policy id 141 name "Identification" from "CH_OM-sz" to "CH_Admin-sz" "Identification" "MINSAT" "ANY" permit log 1147:set policy id 141 1148:exit 1149:set policy id 142 name "Identification" from "CH_OM-sz" to "CH_Access-sz" "Identification" "EMA" "ANY" permit log 1150:set policy id 142 1151:set src-address "identification test" 1152:exit 1153:set policy id 143 name "Paie" from "CH_OM-sz" to "TELEPIN" "Paie" "TELEPIN-NW" "ANY" permit log 1154:set policy id 143 1155:exit 1156:set policy id 144 name "Identification" from "CH_OM-sz" to "CH_Admin-sz" "SAUVE-RESEAU" "MINSAT" "ANY" permit log 1157:set policy id 144 1158:exit 1159:set policy id 145 name "IME_BCK" from "CH_OM-sz" to "CH_Admin-sz" "IME_BCK" "CRS SERVER" "ANY" permit log 1160:set policy id 145 1161:exit 1162:set policy id 146 from "CH_Access-sz" to "CH_OM-sz" "CH_ACC" "admin_nw2" "ANY" permit 1163:set policy id 146 1164:exit 1165:set policy id 147 from "CHAR_OM-sz" to "CH_Access-sz" "Charging_OM" "NTP_2" "NTP" permit log 1166:set policy id 147 1167:set service "PING" 1168:set service "TELNET" 1169:set service "TRACEROUTE" 1170:exit 1171:set policy id 148 from "CHAR_OM-sz" to "CH_OM-sz" "Charging_OM" "admin_nw2" "ANY" permit log 1172:set policy id 148 1173:set dst-address "NOC_Network" 1174:set dst-address "rsg" 1175:set dst-address "SSG_Host" 1176:exit 1177:set policy id 149 from "CH_OM-sz" to "CHAR_OM-sz" "admin_nw2" "Any" "ANY" permit log 1178:set policy id 149 1179:set src-address "Customer_LAN_4" 1180:set src-address "ERICSSON_MSDP" 1181:set src-address "INTEC_MEDIATION2" 1182:set src-address "NOC_Network" 1183:set src-address "rsg" 1184:set src-address "SALLE_TECHNIQUE" 1185:set src-address "SSG_Host" 1186:set src-address "OAM_PPS" 1187:exit 1188:set policy id 150 from "CHAR_OM-sz" to "CH_Internal-sz" "Charging_OM" "CH_INT_1" "ANY" permit log 1189:set policy id 150 1190:exit 1191:set policy id 151 from "CH_Internal-sz" to "CHAR_OM-sz" "CH_INT_1" "Charging_OM" "ANY" permit log 1192:set policy id 151 1193:exit 1194:set policy id 152 from "CHAR_OM-sz" to "CH_Admin-sz" "Charging_OM" "CH_ADM" "ANY" permit log 1195:set policy id 152 1196:set dst-address "CH_ADM_1" 1197:exit 1198:set policy id 153 from "CH_Admin-sz" to "CHAR_OM-sz" "CH_ADM" "Charging_OM" "ANY" permit log 1199:set policy id 153 1200:set src-address "CH_ADM_1" 1201:exit 1202:set policy id 154 from "CH_Internal-sz" to "CH_OM-sz" "CH_INT_1" "NOC_Network" "ANY" permit log 1203:set policy id 154 1204:set dst-address "hlrcluster" 1205:set dst-address "SMSC_IP" 1206:exit 1207:set policy id 155 from "CH_OM-sz" to "CH_Internal-sz" "NOC_Network" "CH_INT_1" "ANY" permit log 1208:set policy id 155 1209:set src-address "hlrcluster" 1210:set src-address "SMSC_IP" 1211:exit 1212:set policy id 156 from "CH_Admin-sz" to "CH_OM-sz" "MINSAT CS5" "Admin_Network" "ANY" permit log 1213:set policy id 156 1214:set dst-address "ANNEXE NW" 1215:set dst-address "CARES" 1216:set dst-address "CARES 1" 1217:set dst-address "CARES 2" 1218:set dst-address "Customer_LAN_4" 1219:set dst-address "DCM_INTEC" 1220:set dst-address "DCM_NETWORK" 1221:set dst-address "Identification" 1222:set dst-address "LMS" 1223:set dst-address "LMS-V1" 1224:set dst-address "LMS-V2" 1225:set dst-address "NEW CALL-CENTER" 1226:set dst-address "Paie" 1227:set dst-address "PEER-LMS" 1228:set dst-address "ROUTEUR CARES" 1229:set dst-address "AGENCES_INTERIEUR" 1230:set dst-address "OPENCODE_S" 1231:exit 1232:set policy id 157 from "CH_OM-sz" to "CH_Admin-sz" "ANNEXE NW" "MINSAT CS5" "ANY" permit log 1233:set policy id 157 1234:set src-address "BILLING" 1235:set src-address "BILLING_11" 1236:set src-address "CARES" 1237:set src-address "CARES 1" 1238:set src-address "CARES 2" 1239:set src-address "CARES-Test" 1240:set src-address "Customer_LAN_4" 1241:set src-address "DCM_INTEC" 1242:set src-address "DCM_NETWORK" 1243:set src-address "LMS" 1244:set src-address "LMS-V1" 1245:set src-address "LMS-V2" 1246:set src-address "NEW CALL-CENTER" 1247:set src-address "PEER-LMS" 1248:set src-address "ROUTEUR CARES" 1249:set src-address "AGENCES_INTERIEUR" 1250:set src-address "OPENCODE_S" 1251:exit 1252:set policy id 158 from "CH_Admin-sz" to "CH_Access-sz" "CH_ADM_1" "CH_ACC" "ANY" permit log 1253:set policy id 158 1254:exit 1255:set policy id 159 from "CH_Access-sz" to "CH_Admin-sz" "CH_ACC" "CH_ADM_1" "ANY" permit log 1256:set policy id 159 1257:exit 1258:set policy id 160 from "CH_Admin-sz" to "CH_Internal-sz" "CH_ADM" "CH_INT" "ANY" permit log 1259:set policy id 160 1260:set src-address "CH_ADM_1" 1261:set dst-address "CH_INT_1" 1262:set dst-address "CH_INT_IVR" 1263:exit 1264:set policy id 161 from "CH_Internal-sz" to "CH_Admin-sz" "CH_INT" "CH_ADM" "ANY" permit log 1265:set policy id 161 1266:set src-address "CH_INT_1" 1267:set src-address "CH_INT_IVR" 1268:set dst-address "CH_ADM_1" 1269:exit 1270:set policy id 162 name "IME_BCK" from "CH_OM-sz" to "CH_Admin-sz" "PACKETFENCE" "CRS SERVER" "ANY" permit log 1271:set policy id 162 1272:exit 1273:set policy id 163 name "MOBILERA_SERVER" from "CH_OM-sz" to "CH_Internal-sz" "MOBILERA_SERVER" "LUVA VIPs" "ANY" permit log 1274:set policy id 163 1275:exit 1276:set policy id 164 from "CH_Admin-sz" to "CH_OM-sz" "Any" "INTEC_MEDIATION" "ANY" permit 1277:set policy id 164 1278:exit 1279:set policy id 165 from "CH_Access-sz" to "CH_OM-sz" "Any" "INTEC" "ANY" permit 1280:set policy id 165 1281:exit 1282:set policy id 166 from "CH_Internal-sz" to "CH_OM-sz" "Any" "INTEC_MEDIATION" "ANY" permit 1283:set policy id 166 1284:exit 1285:set policy id 167 from "TELEPIN" to "CH_OM-sz" "Any" "INTEC_MEDIATION" "ANY" permit 1286:set policy id 167 1287:exit 1288:set policy id 168 from "CHAR_OM-sz" to "CH_OM-sz" "Any" "INTEC_MEDIATION" "ANY" permit 1289:set policy id 168 1290:exit 1291:set policy id 169 from "CH_OM-sz" to "CH_Admin-sz" "INTEC_MEDIATION" "Any" "ANY" permit 1292:set policy id 169 1293:exit 1294:set policy id 170 from "CH_OM-sz" to "CH_Access-sz" "INTEC_MEDIATION" "Any" "ANY" permit log 1295:set policy id 170 1296:exit 1297:set policy id 171 from "CH_OM-sz" to "CH_Internal-sz" "INTEC_MEDIATION" "Any" "ANY" permit 1298:set policy id 171 1299:exit 1300:set policy id 172 from "CH_Access-sz" to "CH_OM-sz" "CCN3_OAM_VIP" "OSS_NOC_Range" "ANY" permit count 1301:set policy id 172 1302:exit 1303:set policy id 173 from "CH_Access-sz" to "CH_OM-sz" "CCN4_OAM_VIP" "OSS_NOC_Range" "ANY" permit count 1304:set policy id 173 1305:exit 1306:set policy id 174 name "MOBILERA" from "CH_Internal-sz" to "CH_OM-sz" "LUVA VIPs" "MOBILERA_SERVER" "ANY" permit log 1307:set policy id 174 disable 1308:set policy id 174 1309:exit 1310:set policy id 175 name "MOBILERA" from "CH_Internal-sz" to "CH_OM-sz" "LUVA VIP3" "MOBILERA_SERVER" "ANY" permit log 1311:set policy id 175 disable 1312:set policy id 175 1313:exit 1314:set policy id 176 name "RDC" from "TELEPIN" to "CH_OM-sz" "TELEPIN-NW" "RDC" "ANY" permit log 1315:set policy id 176 disable 1316:set policy id 176 1317:exit 1318:set policy id 177 name "VS1" from "CH_OM-sz" to "CH_Internal-sz" "ANNEXE NW" "VS1A" "ANY" permit log 1319:set policy id 177 1320:set dst-address "VS1B" 1321:exit 1322:set policy id 178 from "CH_OM-sz" to "CH_Internal-sz" "IME_BCK" "AIR3" "ANY" permit log 1323:set policy id 178 1324:set src-address "INTEC_MEDIATION" 1325:set dst-address "AIR4" 1326:set dst-address "new-SDP1" 1327:set dst-address "NEW-SDP2" 1328:exit 1329:set policy id 179 from "CH_Internal-sz" to "CH_OM-sz" "AIR3" "IME_BCK" "ANY" permit log 1330:set policy id 179 disable 1331:set policy id 179 1332:set src-address "AIR4" 1333:set src-address "new-SDP1" 1334:set src-address "NEW-SDP2" 1335:set src-address "SDP_VIP" 1336:set dst-address "INTEC_MEDIATION" 1337:exit 1338:set policy id 180 from "CH_OM-sz" to "CH_Access-sz" "CARES-Test" "EMA" "ANY" permit log 1339:set policy id 180 1340:exit 1341:set policy id 181 from "CH_OM-sz" to "CH_Admin-sz" "CARES-Test" "MINSAT" "ANY" permit log 1342:set policy id 181 1343:exit 1344:set policy id 183 from "CH_OM-sz" to "CH_Internal-sz" "CONVIVA" "AIR3" "ANY" permit log 1345:set policy id 183 1346:set src-address "OPENCODE_S1" 1347:set src-address "OPENCODE_S2" 1348:set src-address "OPENCODE_S5" 1349:set dst-address "AIR4" 1350:exit 1351:set policy id 184 from "TELEPIN" to "CH_Internal-sz" "TELEPIN-NW" "AIR3" "ANY" permit log 1352:set policy id 184 1353:set src-address "TELEPIN_1" 1354:set src-address "TELEPIN_2" 1355:set dst-address "AIR4" 1356:set dst-address "LUVA VIPs" 1357:exit 1358:set policy id 185 from "CH_Access-sz" to "CH_OM-sz" "10.50.21.65/32" "10.48.11.200/32" "FTP" permit 1359:set policy id 185 1360:set service "PING" 1361:set service "SSH" 1362:set service "TCP-ANY" 1363:set service "UDP-ANY" 1364:exit 1365:set policy id 186 from "CH_OM-sz" to "CH_Access-sz" "10.48.11.200/32" "CCN2_OAM_VIP" "FTP" permit log 1366:set policy id 186 1367:set service "SSH" 1368:set service "ping_trace" 1369:exit 1370:set policy id 187 from "TELEPIN" to "CH_OM-sz" "TELEPIN_1" "IME_BCK" "FTP" permit log 1371:set policy id 187 1372:set src-address "TELEPIN_2" 1373:set dst-address "INTEC_MEDIATION" 1374:exit 1375:set policy id 188 from "CH_Internal-sz" to "CHAR_OM-sz" "Any" "Charging_OM" "ANY" permit 1376:set policy id 188 1377:exit 1378:set policy id 189 from "CH_OM-sz" to "CH_Internal-sz" "OSS_NOC_Range" "Any" "ANY" permit 1379:set policy id 189 1380:exit 1381:set policy id 190 from "CH_OM-sz" to "TELEPIN" "IME_BCK" "TELEPIN_1" "FTP" permit log 1382:set policy id 190 1383:set src-address "INTEC_MEDIATION" 1384:set dst-address "TELEPIN_2" 1385:exit 1386:set policy id 191 from "CH_OM-sz" to "CHAR_OM-sz" "IP_PUB_AIR_TMP" "Charging_OM" "ANY" permit log 1387:set policy id 191 disable 1388:set policy id 191 1389:exit 1390:set policy id 192 name "IME" from "CH_OM-sz" to "CHAR_OM-sz" "IME_BCK" "Charging_OM" "ANY" permit log 1391:set policy id 192 1392:set src-address "INTEC_MEDIATION" 1393:exit 1394:set policy id 193 from "CH_OM-sz" to "CH_Admin-sz" "Admin_Network" "MINSAT CS5" "ANY" permit log 1395:set policy id 193 1396:set src-address "Identification" 1397:set src-address "Paie" 1398:exit 1399:set policy id 194 from "CH_OM-sz" to "CH_Internal-sz" "rsg" "CS5" "ANY" permit log 1400:set policy id 194 disable 1401:set policy id 194 1402:exit 1403:set policy id 195 name "MOBILERA_SERVER" from "CH_OM-sz" to "CH_Internal-sz" "MOBILERA_SERVER" "AIR3" "ANY" permit log 1404:set policy id 195 1405:exit 1406:set policy id 196 from "CH_OM-sz" to "CH_Internal-sz" "SSG_Host" "CS5" "ANY" permit log 1407:set policy id 196 1408:exit 1409:set policy id 197 from "CH_OM-sz" to "CH_Internal-sz" "SSG_Host" "10.50.20.129/32" "ANY" permit log 1410:set policy id 197 1411:exit 1412:set policy id 198 from "CH_OM-sz" to "CH_Admin-sz" "SSG_Host" "MINSAT CS5" "ANY" permit log 1413:set policy id 198 1414:exit 1415:set policy id 199 from "TELEPIN" to "CH_OM-sz" "TELEPIN_2" "Cares-virtuel" "ANY" permit log 1416:set policy id 199 1417:exit 1418:set policy id 200 from "CH_OM-sz" to "TELEPIN" "Cares-virtuel" "TELEPIN_2" "ANY" permit log 1419:set policy id 200 1420:exit 1421:set policy id 201 from "CH_OM-sz" to "CH_Admin-sz" "VPNMiniagence" "MINSAT CS5" "ANY" permit log 1422:set policy id 201 1423:exit 1424:set policy id 202 from "CH_OM-sz" to "TELEPIN" "VPNMiniagence" "TELEPIN_PROXY" "ANY" permit log 1425:set policy id 202 1426:exit 1427:set policy id 203 from "CH_Internal-sz" to "CH_OM-sz" "new-SDP1" "OPENCODE_S1" "ANY" permit log 1428:set policy id 203 1429:set src-address "NEW-SDP2" 1430:set dst-address "OPENCODE_S2" 1431:set dst-address "OPENCODE_S3" 1432:set dst-address "OPENCODE_S4" 1433:exit 1434:set policy id 204 from "CH_OM-sz" to "CH_Internal-sz" "OPENCODE_S1" "new-SDP1" "ANY" permit log 1435:set policy id 204 1436:set src-address "OPENCODE_S2" 1437:set src-address "OPENCODE_S3" 1438:set src-address "OPENCODE_S4" 1439:set dst-address "NEW-SDP2" 1440:exit 1441:set policy id 205 from "CH_OM-sz" to "CH_Internal-sz" "ACS01A" "AIR3" "ANY" permit log 1442:set policy id 205 1443:set src-address "ACS01B" 1444:set src-address "ACSTEST" 1445:set dst-address "AIR4" 1446:exit 1447:set policy id 206 from "CH_OM-sz" to "CH_Admin-sz" "ACSvirtual" "HXC" "ANY" permit log 1448:set policy id 206 1449:exit 1450:set policy id 207 from "CH_OM-sz" to "CH_Admin-sz" "SAUVE-RESEAU" "MINSAT CS5" "ANY" permit log 1451:set policy id 207 1452:exit 1453:set policy id 208 from "CHAR_OM-sz" to "CH_OM-sz" "Any" "NTP SVR" "ANY" permit 1454:set policy id 208 1455:exit 1456:set policy id 209 from "CH_OM-sz" to "CH_Admin-sz" "PROXYCOM" "MINSAT CS5" "ANY" permit log 1457:set policy id 209 1458:exit 1459:set policy id 210 from "CH_OM-sz" to "TELEPIN" "CARES 1" "TELEPIN-NW" "ANY" permit log 1460:set policy id 210 1461:exit 1462:set policy id 211 name "TLC-AIR1" from "CH_OM-sz" to "CHAR_OM-sz" "FLOOZ_TEST" "AIR_2B" "ANY" permit log 1463:set policy id 211 1464:exit 1465:set policy id 212 from "CH_OM-sz" to "CH_Internal-sz" "FLOOZ_TEST" "AIR3" "ANY" permit log 1466:set policy id 212 1467:exit 1468:set policy id 213 from "TELEPIN" to "CH_OM-sz" "TELEPIN_1" "CARES" "ANY" permit log 1469:set policy id 213 1470:exit 1471:set policy id 214 name "AIRTIME" from "CH_OM-sz" to "TELEPIN" "AIRTIME_IP" "TELEPIN_1" "ANY" permit log 1472:set policy id 214 1473:set dst-address "TELEPIN_2" 1474:exit 1475:set policy id 215 name "TLC-AIR" from "CH_OM-sz" to "CH_Internal-sz" "TLC-APP1" "AIR3" "ANY" permit log 1476:set policy id 215 1477:set src-address "TLC-APP2" 1478:set src-address "TLC-APP3" 1479:set dst-address "AIR4" 1480:exit 1481:set policy id 216 name "TLC-AIR2" from "CH_OM-sz" to "CHAR_OM-sz" "TLC-APP1" "AIR_2B" "ANY" permit log 1482:set policy id 216 1483:set src-address "TLC-APP2" 1484:set src-address "TLC-APP3" 1485:exit 1486:set policy id 218 from "CH_OM-sz" to "TELEPIN" "SMSC_NEW" "TELEPIN_1" "ANY" permit log 1487:set policy id 218 1488:set dst-address "TELEPIN_2" 1489:exit 1490:set policy id 220 from "TELEPIN" to "CH_OM-sz" "TELEPIN_1" "SMSC_NEW" "ANY" permit log 1491:set policy id 220 1492:set src-address "TELEPIN_2" 1493:exit 1494:set policy id 221 from "CH_Internal-sz" to "CH_OM-sz" "SAE_Primary" "SMSC_NEW" "ANY" permit log 1495:set policy id 221 1496:exit 1497:set policy id 222 from "CH_OM-sz" to "CH_Internal-sz" "SMSC_NEW" "SAE_Primary" "ANY" permit log 1498:set policy id 222 1499:exit 1500:set policy id 223 from "CH_OM-sz" to "CHAR_OM-sz" "SVA" "AIR_2B" "ANY" permit log 1501:set policy id 223 1502:exit 1503:set policy id 224 from "CH_OM-sz" to "CH_Admin-sz" "New_BI" "CRS SERVER" "ANY" permit log 1504:set policy id 224 1505:exit 1506:set policy id 225 from "CH_Access-sz" to "CH_OM-sz" "Core_SS7_l" "SIG_MOOVIC" "ANY" permit log 1507:set policy id 225 1508:exit 1509:set policy id 226 from "CH_Access-sz" to "CH_OM-sz" "Core_SS7_r" "SIG_MOOVIC" "ANY" permit log 1510:set policy id 226 1511:exit 1512:set policy id 227 from "CH_OM-sz" to "CH_Access-sz" "SIG_MOOVIC" "Core_SS7_l" "ANY" permit log 1513:set policy id 227 1514:exit 1515:set policy id 228 from "CH_OM-sz" to "CH_Access-sz" "SIG_MOOVIC" "Core_SS7_r" "ANY" permit log 1516:set policy id 228 1517:exit 1518:set policy id 229 from "CH_OM-sz" to "CH_Access-sz" "SAUVE-RESEAU" "Core_SS7_r" "ANY" permit log 1519:set policy id 229 1520:exit 1521:set policy id 230 from "CH_OM-sz" to "CH_Access-sz" "SAUVE-RESEAU" "Core_SS7_l" "ANY" permit log 1522:set policy id 230 1523:exit 1524:set policy id 231 from "CH_OM-sz" to "CH_Admin-sz" "SRV-Gdigital" "MINSAT CS5" "ANY" permit log 1525:set policy id 231 1526:exit 1527:set policy id 232 from "MGW_TRAF-SZ" to "CH_OM-sz" "NeMGW_TRAF" "MGWs_MOOVIC" "ANY" permit log 1528:set policy id 232 1529:exit 1530:set policy id 233 from "CH_OM-sz" to "MGW_TRAF-SZ" "MGWs_MOOVIC" "NeMGW_TRAF" "ANY" permit 1531:set policy id 233 1532:exit 1533:set policy id 234 from "CH_OM-sz" to "MGW_TRAF-SZ" "SAUVE-RESEAU" "NeMGW_TRAF" "ANY" permit 1534:set policy id 234 1535:exit 1536:set policy id 235 from "MGW_TRAF-SZ" to "CH_OM-sz" "NeMGW_TRAF" "MGW1_MOOVIC" "ANY" permit log 1537:set policy id 235 1538:exit 1539:set policy id 236 from "CH_OM-sz" to "MGW_TRAF-SZ" "MGW1_MOOVIC" "NeMGW_TRAF" "ANY" permit 1540:set policy id 236 1541:exit 1542:set policy id 237 from "CH_OM-sz" to "CHAR_OM-sz" "oss_group" "Any" "ANY" permit log 1543:set policy id 237 1544:exit 1545:set policy id 238 from "CH_OM-sz" to "CH_Admin-sz" "oss_group" "Any" "ANY" permit log 1546:set policy id 238 1547:exit 1548:set policy id 239 from "CH_OM-sz" to "CH_Access-sz" "oss_group" "Any" "ANY" permit log 1549:set policy id 239 1550:exit 1551:set policy id 240 from "CH_OM-sz" to "MGW_TRAF-SZ" "oss_group" "Any" "ANY" permit 1552:set policy id 240 1553:exit 1554:set policy id 241 from "CH_OM-sz" to "CH_Internal-sz" "oss_group" "Any" "ANY" permit 1555:set policy id 241 1556:exit 1557:set policy id 242 from "CH_OM-sz" to "CN_OM-sz" "oss_group" "Any" "ANY" permit 1558:set policy id 242 1559:exit 1560:set policy id 243 from "CH_OM-sz" to "TELEPIN" "oss_group" "Any" "ANY" permit 1561:set policy id 243 1562:exit 1563:set policy id 244 from "CH_OM-sz" to "CH_Admin-sz" "admin_nw2" "CRS BAIE" "ANY" permit log 1564:set policy id 244 1565:exit 1566:set policy id 245 from "CH_OM-sz" to "CH_Admin-sz" "IntMaourey" "MINSAT CS5" "ANY" permit 1567:set policy id 245 1568:exit 1569:set policy id 246 from "CH_OM-sz" to "TELEPIN" "IntMaourey" "TELEPIN-NW" "ANY" permit 1570:set policy id 246 1571:exit 1572:set policy id 247 from "CH_OM-sz" to "CH_Admin-sz" "opencode1" "CRS SERVER" "ANY" permit log 1573:set policy id 247 1574:exit 1575:set policy id 248 from "CH_OM-sz" to "CH_Admin-sz" "opencode2" "CRS SERVER" "ANY" permit log 1576:set policy id 248 1577:exit 1578:set policy id 249 from "CH_OM-sz" to "TELEPIN" "TLC-SRV" "TELEPIN_1" "ANY" permit 1579:set policy id 249 1580:exit 1581:set policy id 250 from "CH_OM-sz" to "TELEPIN" "TLC-SRV" "TELEPIN_2" "ANY" permit 1582:set policy id 250 1583:exit 1584:set policy id 251 from "CH_OM-sz" to "TELEPIN" "PACKETFENCE" "TELEPIN_PROXY" "ANY" permit log 1585:set policy id 251 1586:exit 1587:set policy id 253 from "CH_Access-sz" to "CH_OM-sz" "CCN Diameter VIP" "10.48.11.39" "ANY" permit 1588:set policy id 253 1589:set src-address "CCN IO" 1590:set src-address "CCN VIPs" 1591:set src-address "CCN2_IO" 1592:set src-address "CCN2_OAM_VIP" 1593:exit 1594:set policy id 254 from "CH_OM-sz" to "CH_Internal-sz" "CRBT_NODE3" "AIR3" "ANY" permit log 1595:set policy id 254 1596:set dst-address "AIR4" 1597:exit 1598:set policy id 255 from "CH_OM-sz" to "CH_Internal-sz" "CRBT_NODE4" "AIR3" "ANY" permit log 1599:set policy id 255 1600:set dst-address "AIR4" 1601:exit 1602:set policy id 256 from "CH_OM-sz" to "CHAR_OM-sz" "CRBT_RANGE" "AIR_2B" "ANY" permit log 1603:set policy id 256 1604:exit 1605:set policy id 257 from "CH_OM-sz" to "CHAR_OM-sz" "CRBT_NODE4" "AIR_2B" "ANY" permit log 1606:set policy id 257 disable 1607:set policy id 257 1608:exit 1609:set policy id 258 from "MGW_TRAF-SZ" to "CH_OM-sz" "NeMGW_TRAF" "MGWs_MOOVBJ" "ANY" permit log 1610:set policy id 258 1611:exit 1612:set policy id 259 from "CH_OM-sz" to "MGW_TRAF-SZ" "MGWs_MOOVBJ" "NeMGW_TRAF" "ANY" permit log 1613:set policy id 259 1614:exit 1615:set policy id 260 from "CH_OM-sz" to "MGW_TRAF-SZ" "admin_nw2" "NeMGW_TRAF" "ANY" permit 1616:set policy id 260 1617:exit 1618:set policy id 261 from "CH_OM-sz" to "MGW_TRAF-SZ" "Customer_LAN_4" "NeMGW_TRAF" "ANY" permit log 1619:set policy id 261 1620:exit 1621:set policy id 262 from "CH_OM-sz" to "MGW_TRAF-SZ" "MGWs_MOOVTG" "NeMGW_TRAF" "ANY" permit log 1622:set policy id 262 1623:exit 1624:set policy id 263 from "MGW_TRAF-SZ" to "CH_OM-sz" "NeMGW_TRAF" "MGWs_MOOVTG" "ANY" permit log 1625:set policy id 263 1626:exit 1627:set policy id 264 from "CH_OM-sz" to "CH_Admin-sz" "ANNEXE NW" "CRS SERVER" "ANY" permit 1628:set policy id 264 1629:exit 1630:set policy id 265 from "CH_OM-sz" to "CH_Admin-sz" "ANNEXE NW" "HXC" "ANY" permit 1631:set policy id 265 1632:exit 1633:set policy id 266 from "CH_OM-sz" to "CH_Internal-sz" "ANNEXE NW" "AIR3" "ANY" permit log 1634:set policy id 266 1635:set dst-address "AIR4" 1636:set dst-address "new-SDP1" 1637:set dst-address "NEW-SDP2" 1638:exit 1639:set policy id 267 from "MGW_TRAF-SZ" to "CH_OM-sz" "NEMSS_GROUP" "MSS_MOOVBJ" "ANY" permit 1640:set policy id 267 1641:exit 1642:set policy id 268 from "CH_OM-sz" to "MGW_TRAF-SZ" "MSS_MOOVBJ" "NEMSS_GROUP" "ANY" permit log 1643:set policy id 268 disable 1644:set policy id 268 1645:exit 1646:set policy id 269 from "CH_OM-sz" to "MGW_TRAF-SZ" "MSSs_MOOVTG" "NEMSS_GROUP" "ANY" permit log 1647:set policy id 269 disable 1648:set policy id 269 1649:exit 1650:set policy id 270 from "MGW_TRAF-SZ" to "CH_OM-sz" "NEMSS_GROUP" "MSSs_MOOVTG" "ANY" permit log 1651:set policy id 270 disable 1652:set policy id 270 1653:exit 1654:set policy id 271 from "CH_Access-sz" to "CH_OM-sz" "Core_SS7_l" "MSSs_MOOVTG" "ANY" permit log 1655:set policy id 271 disable 1656:set policy id 271 1657:exit 1658:set policy id 272 from "CH_Access-sz" to "CH_OM-sz" "Core_SS7_r" "MSSs_MOOVTG" "ANY" permit log 1659:set policy id 272 disable 1660:set policy id 272 1661:exit 1662:set policy id 276 from "CH_OM-sz" to "CH_Access-sz" "MSS_MOOVBJ" "Core_SS7_l" "ANY" permit log 1663:set policy id 276 1664:set dst-address "Core_SS7_r" 1665:exit 1666:set policy id 277 from "CH_Access-sz" to "CH_OM-sz" "Core_SS7_l" "MSS_MOOVBJ" "ANY" permit log 1667:set policy id 277 1668:set src-address "Core_SS7_r" 1669:exit 1670:set policy id 278 from "CH_Access-sz" to "CH_OM-sz" "Core_SS7_l" "MSC2_TG" "ANY" permit log 1671:set policy id 278 1672:set src-address "Core_SS7_r" 1673:set dst-address "MSC_TG" 1674:set dst-address "MSSs_MOOVTG" 1675:exit 1676:set policy id 279 from "CH_Admin-sz" to "CH_OM-sz" "MINSAT" "LMS" "ANY" permit log 1677:set policy id 279 1678:set dst-address "LMS-V1" 1679:set dst-address "LMS-V2" 1680:exit 1681:set policy id 280 from "CH_OM-sz" to "CH_Access-sz" "MSC2_TG" "Core_SS7_l" "ANY" permit log 1682:set policy id 280 1683:set src-address "MSC_TG" 1684:set src-address "MSSs_MOOVTG" 1685:set dst-address "Core_SS7_r" 1686:exit 1687:set policy id 281 from "CH_OM-sz" to "MGW_TRAF-SZ" "MGWs_BJ" "NeMGW_TRAF" "ANY" permit log 1688:set policy id 281 1689:exit 1690:set policy id 282 from "CH_OM-sz" to "CN_OM-sz" "ERICSSON_MSDP" "Any" "ANY" permit 1691:set policy id 282 1692:exit 1693:set policy id 284 from "CH_Access-sz" to "CH_OM-sz" "CCN2_OAM_VIP" "ERICSSON_MSDP" "ANY" permit log 1694:set policy id 284 1695:exit 1696:set policy id 285 from "MGW_TRAF-SZ" to "CH_OM-sz" "NeMGW_TRAF" "MGWs_MOOVGA" "ANY" permit log 1697:set policy id 285 1698:exit 1699:set policy id 286 from "CH_OM-sz" to "MGW_TRAF-SZ" "MGWs_MOOVGA" "NeMGW_TRAF" "ANY" permit log 1700:set policy id 286 1701:exit 1702:set policy id 287 from "CH_OM-sz" to "CH_Admin-sz" "admin_nw3" "Any" "ANY" permit 1703:set policy id 287 1704:exit 1705:set policy id 288 from "CH_Access-sz" to "CH_OM-sz" "Core_ss7_NiG" "Msc_MOOVGA" "ANY" permit log 1706:set policy id 288 1707:exit 1708:set policy id 289 from "CH_Access-sz" to "CH_OM-sz" "Core_ss7_NiG" "Msc_MOOVGA" "ANY" permit log 1709:set policy id 289 disable 1710:set policy id 289 1711:exit 1712:set policy id 290 from "CH_OM-sz" to "CH_Access-sz" "Msc_MOOVGA" "Core_ss7_NiG" "ANY" permit log 1713:set policy id 290 1714:exit 1715:set policy id 291 from "CH_OM-sz" to "CH_Internal-sz" "TILIA/SMS_FACEBOOK" "AIR3" "ANY" permit log 1716:set policy id 291 1717:exit 1718:set policy id 292 from "CH_OM-sz" to "CHAR_OM-sz" "TILIA/SMS_FACEBOOK" "AIR_2B" "ANY" permit log 1719:set policy id 292 1720:exit 1721:set policy id 293 from "CH_OM-sz" to "CH_Access-sz" "NewBBSrv" "EMA" "ANY" permit log 1722:set policy id 293 1723:exit 1724:set policy id 294 from "CH_OM-sz" to "CH_Access-sz" "HLR_NA" "NTP_2" "ANY" permit log 1725:set policy id 294 1726:set src-address "HLR_NB" 1727:set src-address "HLR_R13" 1728:exit 1729:set policy id 295 from "CH_OM-sz" to "CH_Internal-sz" "New_OSS" "AIR3" "ANY" permit log 1730:set policy id 295 1731:set dst-address "AIR4" 1732:exit 1733:set policy id 296 from "CH_OM-sz" to "CH_Internal-sz" "New_OSS" "new-SDP1" "ANY" permit log 1734:set policy id 296 1735:set dst-address "NEW-SDP2" 1736:set dst-address "SDP2_VIP" 1737:set dst-address "SDP3_VIP" 1738:exit 1739:set policy id 297 from "CH_OM-sz" to "CH_Admin-sz" "oss" "MINSAT CS5" "ANY" permit log The source address "oss" is not defined in the CH_OM-sz zone 1740:set policy id 297 Missing Policy data Or Policy has an error and not being converted. 1741:set src-address "oss2" Missing Policy data Or Policy has an error and not being converted. 1742:set src-address "oss_group" Missing Policy data Or Policy has an error and not being converted. 1743:exit 1744:set policy id 298 from "CH_OM-sz" to "CH_Admin-sz" "New_OSS" "MINSAT CS5" "ANY" permit log 1745:set policy id 298 1746:exit 1747:set policy id 299 from "CH_OM-sz" to "CHAR_OM-sz" "New_OSS" "AIR_202" "ANY" permit log 1748:set policy id 299 1749:set dst-address "AIR_2B" 1750:exit 1751:set policy id 300 from "CH_OM-sz" to "CH_Internal-sz" "New_OSS" "VS1A" "ANY" permit log 1752:set policy id 300 1753:set dst-address "VS1B" 1754:exit 1755:set policy id 301 from "CH_OM-sz" to "CH_Access-sz" "New_OSS" "EMA" "ANY" permit log 1756:set policy id 301 1757:exit 1758:set policy id 302 from "CH_OM-sz" to "CH_Admin-sz" "New_OSS" "CRS SERVER" "ANY" permit log 1759:set policy id 302 1760:exit 1761:set policy id 303 from "CH_OM-sz" to "CH_Access-sz" "New_OSS" "10.50.21.65/32" "ANY" permit log 1762:set policy id 303 1763:set dst-address "CCN2_IO" 1764:exit 1765:set policy id 304 from "CH_OM-sz" to "CH_Admin-sz" "New_OSS" "CCN.148" "ANY" permit log 1766:set policy id 304 1767:exit 1768:set policy id 305 from "CH_OM-sz" to "CH_Internal-sz" "New_OSS" "CH_INT_1" "ANY" permit log 1769:set policy id 305 1770:exit 1771:set policy id 306 from "CH_OM-sz" to "TELEPIN" "New_OSS" "TELEPIN_1" "ANY" permit log 1772:set policy id 306 1773:set dst-address "TELEPIN_2" 1774:exit 1775:set policy id 307 from "CH_OM-sz" to "CH_Admin-sz" "New_OSS" "HXC" "ANY" permit log 1776:set policy id 307 1777:exit 1778:set policy id 308 from "CH_OM-sz" to "CH_Admin-sz" "NewBBSrv" "MINSAT CS5" "ANY" permit log 1779:set policy id 308 1780:exit 1781:set policy id 309 from "CH_OM-sz" to "CH_Access-sz" "MSC2_TG" "Core_SS7_l" "ANY" permit log 1782:set policy id 309 disable 1783:set policy id 309 1784:set src-address "MSC_TG" 1785:set src-address "MSS1_MOOVTG" 1786:set src-address "MSS2_MOOVTG" 1787:set src-address "MSS3_MOOVTG" 1788:set src-address "MSS4_MOOVTG" 1789:set src-address "MSSs_MOOVTG" 1790:set dst-address "Core_SS7_r" 1791:exit 1792:set policy id 310 from "CH_Access-sz" to "CH_OM-sz" "Core_SS7_l" "MSC2_TG" "ANY" permit log 1793:set policy id 310 disable 1794:set policy id 310 1795:set src-address "Core_SS7_r" 1796:set dst-address "MSC_TG" 1797:set dst-address "MSS1_MOOVTG" 1798:set dst-address "MSS2_MOOVTG" 1799:set dst-address "MSS3_MOOVTG" 1800:set dst-address "MSS4_MOOVTG" 1801:exit 1802:set policy id 311 from "MGW_TRAF-SZ" to "CH_OM-sz" "NeMGW_TRAF" "MGWs_MOOVIC" "ANY" permit log 1803:set policy id 311 1804:exit 1805:set policy id 312 from "CH_Internal-sz" to "CH_OM-sz" "new-SDP1" "New_OSS" "ANY" permit log 1806:set policy id 312 1807:set src-address "NEW-SDP2" 1808:set src-address "SDP VIP" 1809:set src-address "SDP2_VIP" 1810:set src-address "SDP3_VIP" 1811:set src-address "SDP_VIP" 1812:exit 1813:set policy id 313 from "MGW_TRAF-SZ" to "CH_OM-sz" "NeMGW_TRAF" "MSCs_MOOVGA_NEW" "ANY" permit log 1814:set policy id 313 1815:exit 1816:set policy id 314 from "CH_OM-sz" to "CH_Admin-sz" "AGENCES_NIAMEY" "MINSAT CS5" "ANY" permit log 1817:set policy id 314 1818:exit 1819:set policy id 315 from "CH_OM-sz" to "TELEPIN" "AGENCES_NIAMEY" "TELEPIN-NW" "ANY" permit 1820:set policy id 315 1821:exit 1822:set policy id 316 from "CH_OM-sz" to "CH_Access-sz" "SERVEUR VAS IT" "EMA" "ANY" permit 1823:set policy id 316 1824:exit 1825:set policy id 317 name "LMS-V1" from "CH_OM-sz" to "CH_Admin-sz" "LMS-V3" "MINSAT CS5" "ANY" permit log 1826:set policy id 317 1827:exit 1828:set policy id 318 from "CH_OM-sz" to "CH_Internal-sz" "CRBT_NODE1" "AIR3" "ANY" permit log 1829:set policy id 318 1830:set dst-address "AIR4" 1831:exit 1832:set policy id 319 from "CH_OM-sz" to "CH_Internal-sz" "CRBT_NODE2" "AIR3" "ANY" permit log 1833:set policy id 319 1834:set dst-address "AIR4" 1835:exit 1836:set policy id 320 from "CH_OM-sz" to "TELEPIN" "RESEAU_SAUVEGARDE" "TELEPIN-NW" "ANY" permit log 1837:set policy id 320 1838:exit 1839:set policy id 321 name "RDC" from "TELEPIN" to "CH_OM-sz" "TELEPIN-NW" "RESEAU_SAUVEGARDE" "ANY" permit log 1840:set policy id 321 1841:exit 1842:set policy id 322 from "CH_OM-sz" to "CH_Admin-sz" "SSG_Host" "Any" "ANY" permit 1843:set policy id 322 1844:exit 1845:set policy id 323 from "CH_OM-sz" to "CH_Access-sz" "SSG_Host" "Any" "ANY" permit 1846:set policy id 323 1847:exit 1848:set policy id 324 from "CH_OM-sz" to "CH_Internal-sz" "SSG_Host" "Any" "ANY" permit 1849:set policy id 324 1850:exit 1851:set policy id 325 from "CH_OM-sz" to "CH_Admin-sz" "INTEC_MEDIATION2" "CRS SERVER" "ANY" permit log 1852:set policy id 325 1853:exit 1854:set policy id 326 from "CH_OM-sz" to "CH_Internal-sz" "INTEC_MEDIATION2" "Any" "ANY" permit 1855:set policy id 326 1856:exit 1857:set policy id 327 from "CH_Access-sz" to "CHAR_OM-sz" "Any" "Any" "ANY" permit 1858:set policy id 327 1859:exit 1860:set policy id 328 from "CH_OM-sz" to "CH_Internal-sz" "admin_nw2" "NIGEMA02_OM" "ANY" permit 1861:set policy id 328 1862:set src-address "oss" 1863:set src-address "oss2" 1864:set src-address "OSS3" 1865:set src-address "OSS4" 1866:set src-address "SALLE_TECHNIQUE" 1867:exit 1868:set policy id 329 from "CH_Internal-sz" to "CH_OM-sz" "NIGEMA02_Traffic" "HLR_R13" "ANY" permit 1869:set policy id 329 1870:exit 1871:set policy id 330 from "CH_OM-sz" to "CH_Internal-sz" "HLR_R13" "NIGEMA02_Traffic" "ANY" permit 1872:set policy id 330 1873:exit 1874:set policy id 331 from "CH_OM-sz" to "CH_Access-sz" "INTEC_MEDIATION2" "Any" "ANY" permit log 1875:set policy id 331 1876:exit 1877:set policy id 332 from "CH_Internal-sz" to "CH_OM-sz" "NIGEMA02_Traffic" "10.48.11.39" "ANY" permit log 1878:set policy id 332 1879:set dst-address "NewBBSrv" 1880:set dst-address "NTP SVR" 1881:set dst-address "SERVEUR VAS IT" 1882:exit 1883:set policy id 333 from "CH_OM-sz" to "CH_Internal-sz" "10.48.11.39" "NIGEMA02_Traffic" "ANY" permit 1884:set policy id 333 1885:set src-address "CONVIVA" 1886:set src-address "NewBBSrv" 1887:set src-address "SERVEUR VAS IT" 1888:set src-address "OPENCODE_S" 1889:exit 1890:set policy id 400 from "SS7_CH_1-sz" to "SCTP_CH_1-sz" "Any" "Any" "ANY" permit 1891:set policy id 400 1892:exit 1893:set policy id 401 from "SS7_CH_2-sz" to "SCTP_CH_2-sz" "Any" "Any" "ANY" permit 1894:set policy id 401 1895:exit 1896:set policy id 402 from "SCTP_CH_1-sz" to "SS7_CH_1-sz" "Any" "Any" "ANY" permit 1897:set policy id 402 1898:exit 1899:set policy id 403 from "SCTP_CH_2-sz" to "SS7_CH_2-sz" "Any" "Any" "ANY" permit 1900:set policy id 403 1901:exit 1902:set policy id 404 from "OM_INT-sz" to "OM_EXT-sz" "Any" "Any" "ANY" permit 1903:set policy id 404 1904:exit 1905:set policy id 405 from "OM_EXT-sz" to "OM_INT-sz" "Any" "Any" "ANY" permit 1906:set policy id 405 1907:exit 1908:set policy id 406 from "MGW_TRAF-SZ" to "MGW_EXT-sz" "Any" "Any" "ANY" permit 1909:set policy id 406 1910:exit 1911:set policy id 407 from "MGW_EXT-sz" to "MGW_TRAF-SZ" "Any" "Any" "ANY" permit 1912:set policy id 407 1913:exit 1914:set policy id 408 from "CH_OM-sz" to "TELEPIN" "APN_STAFF" "Any" "ANY" permit 1915:set policy id 408 1916:exit 1917:set policy id 409 from "CH_Access-sz" to "CH_OM-sz" "CCN3_IO" "OSS_NOC_Range" "ANY" permit 1918:set policy id 409 1919:set src-address "CCN4_IO" 1920:exit 1921:set firewall log-self Line not recognized by S2J 1922:set nsmgmt bulkcli reboot-timeout 60 This can't be translated as it requires changes in NSM database.NSM will make all necessary configuation changes when you add SRX device to NSM. 1923:set ssh version v2 1924:set config lock timeout 5 Line not recognized by S2J 1925:unset license-key auto-update Line not recognized by S2J 1926:set telnet client enable Line not recognized by S2J 1927:set ntp server "172.16.2.12" 1928:set ntp server backup1 "0.0.0.0" 1929:set ntp server backup2 "0.0.0.0" 1930:set snmp port listen 161 There is no equivalent in JUNOS 1931:set snmp port trap 162 1932:set vrouter "untrust-vr" 1933:exit 1934:set vrouter "trust-vr" 1935:unset add-default-route Line not recognized by S2J 1936:set route 192.168.15.216/29 interface ethernet0/2.23 gateway 192.168.15.163 1937:set route 192.168.15.224/29 interface ethernet0/2.23 gateway 192.168.15.163 1938:set route 192.168.15.200/29 interface ethernet0/2.23 gateway 192.168.15.163 1939:set route 10.50.21.1/32 interface ethernet0/2.23 gateway 192.168.15.163 1940:set route 10.50.21.65/32 interface ethernet0/2.23 gateway 192.168.15.163 1941:set route 10.50.21.144/28 interface ethernet0/2.23 gateway 192.168.15.163 1942:set route 10.50.21.136/29 interface ethernet0/2.23 gateway 192.168.15.163 1943:set route 192.168.2.0/24 interface ethernet0/2.26 gateway 192.168.2.126 permanent 1944:set route 192.168.16.40/29 interface ethernet0/2.23 gateway 192.168.15.163 1945:set route 10.130.10.0/24 interface ethernet0/2.23 gateway 192.168.15.163 1946:set route 10.130.11.0/24 interface ethernet0/2.23 gateway 192.168.15.162 1947:set route 10.50.22.138/32 interface ethernet0/2.23 gateway 192.168.15.163 1948:set route 10.50.22.170/32 interface ethernet0/2.23 gateway 192.168.15.163 1949:set route 10.50.22.137/32 interface ethernet0/2.23 gateway 192.168.15.163 1950:set route 10.50.22.169/32 interface ethernet0/2.23 gateway 192.168.15.163 1951:set route 10.50.21.2/32 interface ethernet0/2.23 gateway 192.168.15.163 1952:set route 10.50.21.66/32 interface ethernet0/2.23 gateway 192.168.15.163 1953:set route 10.50.21.168/32 interface ethernet0/2.23 gateway 192.168.15.163 1954:set route 10.50.21.160/32 interface ethernet0/2.23 gateway 192.168.15.163 1955:set route 10.50.22.129/32 interface ethernet0/2.23 gateway 192.168.15.163 1956:set route 10.50.22.130/32 interface ethernet0/2.23 gateway 192.168.15.163 1957:set route 10.50.22.131/32 interface ethernet0/2.23 gateway 192.168.15.163 1958:set route 10.50.22.132/32 interface ethernet0/2.23 gateway 192.168.15.163 1959:set route 10.50.22.161/32 interface ethernet0/2.23 gateway 192.168.15.163 1960:set route 10.50.22.162/32 interface ethernet0/2.23 gateway 192.168.15.163 1961:set route 10.50.22.163/32 interface ethernet0/2.23 gateway 192.168.15.163 1962:set route 10.50.22.164/32 interface ethernet0/2.23 gateway 192.168.15.163 1963:set route 10.50.21.3/32 interface ethernet0/2.23 gateway 192.168.15.163 1964:set route 10.50.21.67/32 interface ethernet0/2.23 gateway 192.168.15.163 1965:set route 10.50.21.200/32 interface ethernet0/2.23 gateway 192.168.15.163 1966:set route 10.50.21.192/32 interface ethernet0/2.23 gateway 192.168.15.163 1967:set route 10.50.22.133/32 interface ethernet0/2.23 gateway 192.168.15.163 1968:set route 10.50.22.134/32 interface ethernet0/2.23 gateway 192.168.15.163 1969:set route 10.50.22.135/32 interface ethernet0/2.23 gateway 192.168.15.163 1970:set route 10.50.22.136/32 interface ethernet0/2.23 gateway 192.168.15.163 1971:set route 10.50.22.165/32 interface ethernet0/2.23 gateway 192.168.15.163 1972:set route 10.50.22.166/32 interface ethernet0/2.23 gateway 192.168.15.163 1973:set route 10.50.22.167/32 interface ethernet0/2.23 gateway 192.168.15.163 1974:set route 10.50.22.168/32 interface ethernet0/2.23 gateway 192.168.15.163 1975:set route 10.50.21.176/28 interface ethernet0/2.23 gateway 192.168.15.163 1976:set route 10.50.21.208/28 interface ethernet0/2.23 gateway 192.168.15.163 1977:set route 10.55.64.0/28 interface ethernet0/0.36 gateway 10.55.64.99 1978:set route 10.56.64.0/28 interface ethernet0/0.36 gateway 10.55.64.99 1979:set route 0.0.0.0/0 vrouter "untrust-vr" preference 20 1980:set route 192.168.6.0/24 vrouter "siteinfra-vr" preference 20 Next Table Looping found. This route wont be converted. 1981:set route 192.168.7.0/24 vrouter "siteinfra-vr" preference 20 Next Table Looping found. This route wont be converted. 1982:set route 192.168.8.0/24 vrouter "siteinfra-vr" preference 20 Next Table Looping found. This route wont be converted. 1983:set route 192.168.9.0/24 vrouter "siteinfra-vr" preference 20 Next Table Looping found. This route wont be converted. 1984:set route 192.168.10.0/24 vrouter "siteinfra-vr" preference 20 Next Table Looping found. This route wont be converted. 1985:set route 192.168.11.0/24 vrouter "siteinfra-vr" preference 20 Next Table Looping found. This route wont be converted. 1986:set route 192.168.12.0/24 vrouter "siteinfra-vr" preference 20 Next Table Looping found. This route wont be converted. 1987:set route 192.168.13.0/24 vrouter "siteinfra-vr" preference 20 Next Table Looping found. This route wont be converted. 1988:set route 192.168.14.0/24 vrouter "siteinfra-vr" preference 20 Next Table Looping found. This route wont be converted. 1989:set route 192.168.16.252/30 vrouter "siteinfra-vr" preference 20 Next Table Looping found. This route wont be converted. 1990:set route 193.220.181.186/32 vrouter "siteinfra-vr" preference 20 Next Table Looping found. This route wont be converted. 1991:set route 192.168.4.0/24 vrouter "siteinfra-vr" preference 20 Next Table Looping found. This route wont be converted. 1992:set route 172.16.2.240/32 vrouter "siteinfra-vr" preference 20 Next Table Looping found. This route wont be converted. 1993:set route 172.16.2.128/27 vrouter "siteinfra-vr" preference 20 Next Table Looping found. This route wont be converted. 1994:set route 172.16.2.12/32 vrouter "siteinfra-vr" preference 20 Next Table Looping found. This route wont be converted. 1995:set route 192.168.3.0/24 vrouter "siteinfra-vr" preference 20 Next Table Looping found. This route wont be converted. 1996:set route 82.201.195.248/32 vrouter "siteinfra-vr" preference 20 Next Table Looping found. This route wont be converted. 1997:set route 80.246.3.10/32 vrouter "siteinfra-vr" preference 20 Next Table Looping found. This route wont be converted. 1998:set route 67.210.160.242/32 vrouter "siteinfra-vr" preference 20 Next Table Looping found. This route wont be converted. 1999:set route 217.52.30.49/32 vrouter "siteinfra-vr" preference 20 Next Table Looping found. This route wont be converted. 2000:set route 192.168.5.15/32 vrouter "siteinfra-vr" preference 20 Next Table Looping found. This route wont be converted. 2001:set route 10.49.4.0/24 vrouter "siteinfra-vr" preference 20 Next Table Looping found. This route wont be converted. 2002:set route 192.168.40.0/30 vrouter "siteinfra-vr" preference 20 Next Table Looping found. This route wont be converted. 2003:set route 10.49.6.0/24 vrouter "siteinfra-vr" preference 20 Next Table Looping found. This route wont be converted. 2004:set route 10.49.7.0/24 vrouter "siteinfra-vr" preference 20 Next Table Looping found. This route wont be converted. 2005:set route 10.49.8.0/24 vrouter "siteinfra-vr" preference 20 Next Table Looping found. This route wont be converted. 2006:set route 10.49.9.0/24 vrouter "siteinfra-vr" preference 20 Next Table Looping found. This route wont be converted. 2007:set route 10.177.16.0/24 vrouter "siteinfra-vr" preference 20 Next Table Looping found. This route wont be converted. 2008:set route 172.20.1.0/24 vrouter "siteinfra-vr" preference 20 Next Table Looping found. This route wont be converted. 2009:set route 10.48.2.0/24 vrouter "siteinfra-vr" preference 20 Next Table Looping found. This route wont be converted. 2010:set route 10.48.5.0/24 vrouter "siteinfra-vr" preference 20 Next Table Looping found. This route wont be converted. 2011:set route 10.49.253.0/24 vrouter "siteinfra-vr" preference 20 Next Table Looping found. This route wont be converted. 2012:set route 10.48.0.0/16 vrouter "siteinfra-vr" preference 20 Next Table Looping found. This route wont be converted. 2013:set route 10.20.10.0/24 vrouter "siteinfra-vr" preference 20 Next Table Looping found. This route wont be converted. 2014:set route 10.49.10.0/24 vrouter "siteinfra-vr" preference 20 Next Table Looping found. This route wont be converted. 2015:set route 172.25.1.16/29 vrouter "siteinfra-vr" preference 20 metric 1 Next Table Looping found. This route wont be converted. 2016:set route 10.50.10.3/32 vrouter "siteinfra-vr" preference 20 metric 1 Next Table Looping found. This route wont be converted. 2017:set route 10.172.49.0/28 vrouter "siteinfra-vr" preference 20 Next Table Looping found. This route wont be converted. 2018:set route 10.172.34.16/30 vrouter "siteinfra-vr" preference 20 Next Table Looping found. This route wont be converted. 2019:set route 10.172.34.12/30 vrouter "siteinfra-vr" preference 20 Next Table Looping found. This route wont be converted. 2020:set route 10.50.24.2/32 vrouter "siteinfra-vr" preference 20 metric 1 Next Table Looping found. This route wont be converted. 2021:set route 10.50.24.1/32 vrouter "siteinfra-vr" preference 20 metric 1 Next Table Looping found. This route wont be converted. 2022:set route 10.24.50.98/32 vrouter "siteinfra-vr" preference 20 metric 1 Next Table Looping found. This route wont be converted. 2023:set route 10.18.38.0/24 vrouter "siteinfra-vr" preference 20 metric 1 Next Table Looping found. This route wont be converted. 2024:set route 10.82.22.0/24 vrouter "siteinfra-vr" preference 20 metric 1 Next Table Looping found. This route wont be converted. 2025:set route 10.18.63.0/24 vrouter "siteinfra-vr" preference 20 metric 1 Next Table Looping found. This route wont be converted. 2026:set route 10.86.0.0/24 vrouter "siteinfra-vr" preference 20 metric 1 Next Table Looping found. This route wont be converted. 2027:set route 10.177.32.0/24 vrouter "siteinfra-vr" preference 20 metric 1 Next Table Looping found. This route wont be converted. 2028:set route 172.18.5.0/24 vrouter "siteinfra-vr" preference 20 metric 1 Next Table Looping found. This route wont be converted. 2029:set route 10.35.8.0/28 vrouter "siteinfra-vr" preference 20 metric 1 Next Table Looping found. This route wont be converted. 2030:set route 10.35.7.0/24 vrouter "siteinfra-vr" preference 20 Next Table Looping found. This route wont be converted. 2031:set route 10.50.24.0/24 vrouter "siteinfra-vr" preference 20 metric 1 Next Table Looping found. This route wont be converted. 2032:set route 10.41.0.0/24 vrouter "siteinfra-vr" preference 20 metric 1 Next Table Looping found. This route wont be converted. 2033:set route 10.48.11.215/32 vrouter "siteinfra-vr" preference 20 metric 1 Next Table Looping found. This route wont be converted. 2034:set route 10.49.13.0/24 vrouter "siteinfra-vr" preference 20 metric 1 Next Table Looping found. This route wont be converted. 2035:set route 10.48.17.0/24 vrouter "siteinfra-vr" preference 20 metric 1 Next Table Looping found. This route wont be converted. 2036:set route 10.48.21.0/24 vrouter "siteinfra-vr" preference 20 metric 1 Next Table Looping found. This route wont be converted. 2037:exit 2038:set vrouter "siteinfra-vr" 2039:set route 192.168.6.0/24 interface ethernet0/1 gateway 192.168.16.253 2040:set route 192.168.7.0/24 interface ethernet0/1 gateway 192.168.16.253 2041:set route 192.168.8.0/24 interface ethernet0/1 gateway 192.168.16.253 2042:set route 192.168.9.0/24 interface ethernet0/1 gateway 192.168.16.253 2043:set route 192.168.10.0/24 interface ethernet0/1 gateway 192.168.16.253 2044:set route 192.168.11.0/24 interface ethernet0/1 gateway 192.168.16.253 2045:set route 192.168.12.0/24 interface ethernet0/1 gateway 192.168.16.253 2046:set route 192.168.13.0/24 interface ethernet0/1 gateway 192.168.16.253 2047:set route 192.168.14.0/24 interface ethernet0/1 gateway 192.168.16.253 2048:set route 193.220.181.186/32 interface ethernet0/1 gateway 192.168.16.253 2049:set route 192.168.4.0/24 interface ethernet0/1 gateway 192.168.16.253 2050:set route 172.16.2.240/32 interface ethernet0/1 gateway 192.168.16.253 2051:set route 172.16.2.128/27 interface ethernet0/1 gateway 192.168.16.253 2052:set route 172.16.2.12/32 interface ethernet0/1 gateway 192.168.16.253 2053:set route 192.168.3.0/24 interface ethernet0/1 gateway 192.168.16.253 2054:set route 82.201.195.248/32 interface ethernet0/1 gateway 192.168.16.253 2055:set route 80.246.3.10/32 interface ethernet0/1 gateway 192.168.16.253 2056:set route 67.210.160.242/32 interface ethernet0/1 gateway 192.168.16.253 2057:set route 217.52.30.49/32 interface ethernet0/1 gateway 192.168.16.253 2058:set route 192.168.5.15/32 interface ethernet0/1 gateway 192.168.16.253 2059:set route 10.49.4.0/24 interface ethernet0/1 gateway 192.168.16.253 2060:set route 192.168.40.0/30 interface ethernet0/1 gateway 192.168.16.253 2061:set route 192.168.4.249/32 interface ethernet0/1 gateway 192.168.16.253 2062:set route 10.49.6.0/24 interface ethernet0/1 gateway 192.168.16.253 2063:set route 10.49.9.0/24 interface ethernet0/1 gateway 192.168.16.253 2064:set route 10.49.7.0/24 interface ethernet0/1 gateway 192.168.16.253 2065:set route 10.49.8.0/24 interface ethernet0/1 gateway 192.168.16.253 2066:set route 10.177.16.0/24 interface ethernet0/1 gateway 192.168.16.253 2067:set route 172.20.1.0/24 interface ethernet0/1 gateway 192.168.16.253 2068:set route 10.48.2.0/24 interface ethernet0/1 gateway 192.168.16.253 2069:set route 10.48.5.0/24 interface ethernet0/1 gateway 192.168.16.253 2070:set route 10.48.1.0/24 interface ethernet0/1 gateway 192.168.16.253 2071:set route 10.49.253.0/24 interface ethernet0/1 gateway 192.168.16.253 2072:set route 10.48.0.0/16 interface ethernet0/1 gateway 192.168.16.253 2073:set route 10.20.10.0/24 interface ethernet0/1 gateway 192.168.16.253 2074:set route 10.49.10.0/24 interface ethernet0/1 gateway 192.168.16.253 2075:set route 10.48.3.0/24 interface ethernet0/1 gateway 192.168.16.253 2076:set route 10.48.14.0/24 interface ethernet0/1 gateway 192.168.16.253 2077:set route 10.48.20.0/24 interface ethernet0/1 gateway 192.168.16.253 2078:set route 10.48.11.30/32 interface ethernet0/1 gateway 192.168.16.253 2079:set route 10.177.32.51/24 interface ethernet0/1 gateway 192.168.16.253 Invalid IP Address. Not accepted in Junos. Host IP should have /32 or 255.255.255.255 as mask. 2080:set route 41.191.68.65/32 interface ethernet0/1 gateway 192.168.16.253 2081:set route 10.49.10.21/32 interface ethernet0/1 gateway 192.168.16.253 2082:set route 10.49.10.23/32 interface ethernet0/1 gateway 192.168.16.253 2083:set route 172.25.1.16/29 interface ethernet0/1 gateway 192.168.16.253 2084:set route 10.48.18.0/24 interface ethernet0/1 gateway 192.168.16.253 2085:set route 10.48.11.200/32 interface ethernet0/1 gateway 192.168.16.253 2086:set route 10.48.11.209/32 interface ethernet0/1 gateway 192.168.16.253 2087:set route 10.48.11.39/32 interface ethernet0/1 gateway 192.168.16.253 2088:set route 10.49.10.19/32 interface ethernet0/1 gateway 192.168.16.253 2089:set route 192.168.100.5/32 interface ethernet0/1 gateway 192.168.16.253 2090:set route 10.172.11.17/32 interface ethernet0/1 gateway 192.168.16.253 2091:set route 10.172.10.17/32 interface ethernet0/1 gateway 192.168.16.253 2092:set route 41.212.101.127/32 interface ethernet0/1 gateway 192.168.16.253 2093:set route 10.49.3.32/27 interface ethernet0/1 gateway 192.168.16.253 2094:set route 10.50.12.2/32 interface ethernet0/1 gateway 192.168.16.253 2095:set route 10.50.12.3/32 interface ethernet0/1 gateway 192.168.16.253 2096:set route 10.50.12.20/32 interface ethernet0/1 gateway 192.168.16.253 2097:set route 10.0.128.1/32 interface ethernet0/1 gateway 192.168.16.253 2098:set route 10.48.11.0/24 interface ethernet0/1 gateway 192.168.16.253 2099:set route 10.50.10.3/32 interface ethernet0/1 gateway 192.168.16.253 2100:set route 10.172.49.0/28 interface ethernet0/1 gateway 192.168.16.253 2101:set route 10.172.34.16/30 interface ethernet0/1 gateway 192.168.16.253 2102:set route 10.172.34.12/30 interface ethernet0/1 gateway 192.168.16.253 2103:set route 10.50.24.1/30 interface ethernet0/1 gateway 192.168.16.253 Invalid IP Address. Not accepted in Junos. Host IP should have /32 or 255.255.255.255 as mask. 2104:set route 10.50.24.98/32 interface ethernet0/1 gateway 192.168.16.253 2105:set route 10.48.22.0/24 interface ethernet0/1 gateway 192.168.13.1 2106:set route 10.18.38.0/24 interface ethernet0/1 gateway 192.168.16.253 2107:set route 10.82.22.0/24 interface ethernet0/1 gateway 192.168.16.253 2108:set route 10.18.63.0/24 interface ethernet0/1 gateway 192.168.16.253 2109:set route 10.86.0.0/24 interface ethernet0/1 gateway 192.168.16.253 2110:set route 172.18.5.0/24 interface ethernet0/1 gateway 192.168.16.253 2111:set route 10.35.8.0/28 interface ethernet0/1 gateway 192.168.16.253 2112:set route 10.35.7.0/24 interface ethernet0/1 gateway 192.168.16.253 2113:set route 203.194.142.37/32 interface ethernet0/1 gateway 192.168.13.1 2114:set route 10.41.0.0/24 interface ethernet0/1 gateway 192.168.16.253 2115:set route 10.48.6.0/24 interface ethernet0/1 gateway 192.168.16.253 2116:set route 10.48.7.0/24 interface ethernet0/1 gateway 192.168.16.253 2117:set route 10.48.23.0/24 interface ethernet0/1 gateway 192.168.16.253 2118:set route 10.48.11.215/32 interface ethernet0/1 gateway 192.168.16.253 2119:set route 10.49.13.0/24 interface ethernet0/1 gateway 192.168.16.253 2120:set route 10.170.53.15/32 interface ethernet0/1 gateway 192.168.16.253 2121:set route 10.48.17.0/24 interface ethernet0/1 gateway 192.168.16.253 2122:set route 10.49.14.0/2 interface ethernet0/1 gateway 192.168.16.253 Invalid IP Address. Not accepted in Junos. Host IP should have /32 or 255.255.255.255 as mask. 2123:set route 10.49.14.0/24 interface ethernet0/1 gateway 192.168.16.253 2124:set route 10.48.21.0/24 interface ethernet0/1 gateway 192.168.16.253 2125:set route 10.48.8.0/24 interface ethernet0/1 gateway 192.168.16.253 2126:set route 10.57.20.2/30 interface ethernet0/1 gateway 192.168.16.253 Invalid IP Address. Not accepted in Junos. Host IP should have /32 or 255.255.255.255 as mask. 2127:set route 10.50.24.0/24 interface ethernet0/1 gateway 192.168.16.253 2128:set route 0.0.0.0/0 vrouter "untrust-vr" preference 20 2129:set route 192.168.15.0/24 vrouter "trust-vr" preference 20 Next Table Looping found. This route wont be converted. 2130:set route 192.168.16.0/24 vrouter "trust-vr" preference 20 Next Table Looping found. This route wont be converted. 2131:set route 192.168.15.224/29 vrouter "trust-vr" preference 20 Next Table Looping found. This route wont be converted. 2132:set route 192.168.15.216/29 vrouter "trust-vr" preference 20 Next Table Looping found. This route wont be converted. 2133:set route 192.168.16.40/29 vrouter "trust-vr" preference 20 Next Table Looping found. This route wont be converted. 2134:set route 192.168.15.200/29 vrouter "trust-vr" preference 20 Next Table Looping found. This route wont be converted. 2135:set route 192.168.16.0/27 vrouter "trust-vr" preference 20 Next Table Looping found. This route wont be converted. 2136:set route 192.168.2.0/24 vrouter "trust-vr" preference 20 Next Table Looping found. This route wont be converted. 2137:set route 10.50.20.0/22 vrouter "trust-vr" preference 20 Next Table Looping found. This route wont be converted. 2138:set route 10.130.10.0/24 vrouter "trust-vr" preference 20 Next Table Looping found. This route wont be converted. 2139:set route 10.130.11.0/24 vrouter "trust-vr" preference 20 Next Table Looping found. This route wont be converted. 2140:set route 10.50.28.0/28 vrouter "trust-vr" preference 20 Next Table Looping found. This route wont be converted. 2141:set route 10.50.22.208/28 vrouter "trust-vr" preference 20 Next Table Looping found. This route wont be converted. 2142:set route 10.50.22.192/28 vrouter "trust-vr" preference 20 Next Table Looping found. This route wont be converted. 2143:exit 2144:set vrouter "SS7_CH-vr" 2145:set route 10.50.22.0/26 interface ethernet0/2.33:1 gateway 10.50.22.225 Channelized interface is not supported in JUNOS 2146:set route 10.55.4.0/29 interface ethernet0/0.33:1 gateway 10.55.5.209 Channelized interface is not supported in JUNOS 2147:set route 10.50.22.128/27 interface ethernet0/2.33:1 gateway 10.50.22.225 Channelized interface is not supported in JUNOS 2148:set route 10.50.22.64/26 interface ethernet0/2.34:2 gateway 10.50.22.229 Channelized interface is not supported in JUNOS 2149:set route 10.55.4.8/29 interface ethernet0/0.34:2 gateway 10.55.5.213 Channelized interface is not supported in JUNOS 2150:set route 10.50.22.160/27 interface ethernet0/2.34:2 gateway 10.50.22.229 Channelized interface is not supported in JUNOS 2151:set route 10.55.4.16/28 interface ethernet0/0.33:1 gateway 10.55.5.209 2152:set route 10.55.4.16/28 interface ethernet0/0.34:2 gateway 10.55.5.213 2153:set route 10.55.4.0/28 interface ethernet0/0.33:1 gateway 10.55.5.209 Channelized interface is not supported in JUNOS 2154:set route 10.55.4.0/28 interface ethernet0/0.34:2 gateway 10.55.5.213 Channelized interface is not supported in JUNOS 2155:set route 10.55.0.152/29 interface ethernet0/0.33:1 gateway 10.55.5.209 Channelized interface is not supported in JUNOS 2156:set route 10.55.0.136/29 interface ethernet0/0.33:1 gateway 10.55.5.209 Channelized interface is not supported in JUNOS 2157:set route 10.55.0.144/29 interface ethernet0/0.33:1 gateway 10.55.5.209 Channelized interface is not supported in JUNOS 2158:set route 10.55.0.152/29 interface ethernet0/0.34:2 gateway 10.55.5.213 Channelized interface is not supported in JUNOS 2159:set route 10.55.0.136/29 interface ethernet0/0.34:2 gateway 10.55.5.213 Channelized interface is not supported in JUNOS 2160:set route 10.55.0.144/29 interface ethernet0/0.34:2 gateway 10.55.5.213 Channelized interface is not supported in JUNOS 2161:exit 2162:set vrouter "OM-vr" 2163:set route 10.50.20.0/22 interface ethernet0/2.35 gateway 10.50.22.236 2164:set route 10.55.48.176/30 interface ethernet0/0.35 gateway 10.55.48.186 2165:set route 10.55.48.180/30 interface ethernet0/0.35 gateway 10.55.48.187 2166:exit 2167:set vrouter "untrust-vr" 2168:exit 2169:set vrouter "trust-vr" 2170:exit 2171:set vrouter "siteinfra-vr" 2172:exit 2173:set vrouter "SS7_CH-vr" 2174:exit 2175:set vrouter "OM-vr" 2176:exit [NSRP] NSRP is not supported in this release [System] Password(s) must be changed before commit