SRX

Expand all | Collapse all

Access to the SRX 240H mnagement panel

Jump to Best Answer
  • 1.  Access to the SRX 240H mnagement panel

    Posted 07-31-2020 10:05
      |   view attached

    Hi, I'm new to the forum and just getting started with the SRX 240H. I have started a dynamic VPN and now, after entering the public address on which this firewall is installed, I have a welcome message to log in to download the VPN client (probably called Phase 1) - screenshot attached


    But I wish I could - either via VPN - or directly after entering the public address where this firewall is installed - to enter the management panel. Is it possible ?
    Because even when I configure a VPN tunnel and get to the LAN, after entering gw, for example 192.168.2.1 - instead of the login panel, I see the VPN login screen.
    Can you tell me what I'm doing wrong?



  • 2.  RE: Access to the SRX 240H mnagement panel
    Best Answer

    Posted 07-31-2020 10:56

    Hi Robert,

     

    After you configured Dynamic VPN in SRX240H, you were no longer able to use the J-Web(GUI) on this device. Am I right? Please correct me if I'm wrong.

     

    If above is your case, then it is an expected behaviour. Both Dynamic VPN and J-Web uses port 443 which is HTTPS. So, if you would like to access J-Web on the same 443 port, you gotta use something like this - set system services web-management management-url /mgmt

     

    Use can use "/mgmt" or "/admin" or whatever suffix you want. Now when you access the J-Web via browser, you need to enter - https://192.168.2.1/mgmt

     

    For more information, please refer to the following KB article - https://kb.juniper.net/InfoCenter/index?page=content&id=KB33505

     

    Alternatively, you can also use J-Web to listen on a different port if you don't want to use the above method.

    e.g.:

    set system services web-management https system-generated-certificate

    set system services web-management https interface ge-0/0/0.0 port 8443