    Posted 02-27-2014 04:57

    Hello all,


    I've been trying to find out if SRX considers and 'any' differently, as applying to policies and nat statements with source/destination-addresses. I've searched high and low but since the keyword 'any' appears so often in articles I haven't found the answer.



    Best Answer

    Posted 02-27-2014 08:12

    I don't have an article on this for you but they are essentially the same thing.


    Consider a policy or NAT rule as you said, if you were to create an address book entry for called "All_IPs" and referenced it in your rules, it would be the same thing.


    You may use in a firewall  filter rule to block all access except for management with an "except" rule then for your management IP range.



    Posted 02-27-2014 08:16

    Thanks for your reply. That helps.