TechPost

TechPost

Byte-Sized Articles on Juniper Solutions by Network Engineers, for Network Engineers

Do you need secure, isolated multi-tenant connectivity across Kubernetes and cloud infrastructures. JCNR supports SRv6 L3VPN with micro-Segment ...
Let's use the Juniper filtering tools in a more comprehensive and realistic use case in which MX301 will serve as a filtering routing gateway ...
Explore how Juniper’s MX301 router, using Junos 24.4 and its Trio 6 ASIC’s specialized Fast Lookup Table (FLT), accelerates BGP FlowSpec rule processing ...
Juniper adds support for inline IPsec on MX-series routers, meaning that IPsec encryption/decryption is done directly by the router’s Packet Forwarding ...
For a long time, the SRX has been able to periodically download IPv4 and IPv6 prefixes from external sources and map them to objects used in firewall ...
Let's explore the capabilities of the Juniper Networks MX301 Universal Routing Platform, a 1RU edge router built on Trio 6 silicon that delivers ...
After three years of activity, we passed the 200 articles mark last month. Writers have been extremely prolific, let's try to build a page with ...
Priority Flow Control (PFC) can be used in Ethernet fabrics to achieve lossless traffic—particularly important in AI/ML workloads and HPC—by pausing ...
The Juniper Cloud‑Native Router (JCNR) integrates modern forwarding and resilience mechanisms, specifically Segment Routing with MPLS (SR‑MPLS) ...
The SRX4700 100Gbps Full Duplex IPSEC tunnel TechPost demonstrates the ability of the HPE Juniper Networking flagship 1RU firewall device to encrypt ...
A detailed breakdown of the private no-prepend-gloabal-AS option for the local-AS setting in BGP on Juniper devices, showing how this mode influences ...
A detailed breakdown of the no-prepend-global-AS option for the local-AS setting in BGP on Juniper devices, showing how this mode influences AS-path ...
A detailed breakdown of the Private option for the local-AS setting in BGP on Juniper devices, showing how this mode influences AS-path prepending ...
A detailed breakdown of the alias option for the local-AS setting in BGP on Juniper devices, showing how this mode influences AS-path prepending ...
A detailed breakdown of the Default option for the local-AS setting in BGP on Juniper devices, showing how this mode influences AS-path prepending ...
How AI agents, connected via the open-source Model Context Protocol (MCP) server, can simplify and standardize network automation tasks on Junos ...
Red Hat Ansible Automation Platform and Juniper Networks each have collections of Ansible modules for managing Junos devices. We are merging Ansible’s ...
EVPN technology provides native CE direct L2 multi-homing capabilities, in either Active-Active or Active-Standby scheme. However, there might be ...
Can we run distributed training between clusters located 50 km apart? How do we interconnect these sites? Do we need to tweak the collectives ...
Juniper Networks introduces a powerful tool—Passive Port Monitoring (PPM)—to elevate the visibility, accuracy, and security of synchronization ...
The New Role of the Network Engineer in the Age of AI: Context Is King. The arrival of AI in networking is transforming the way we think ...
What if you had an AI partner that could help you manage your network and troubleshoot any issues, learn from them, and continuously get smarter ...
This document provides an overview of MAP-E (Mapping of Address and Port using Encapsulation), a stateless IPv4-over-IPv6 transition technology ...
Learn all about SRv6 micro-SIDs (uSIDs), a compressed alternative to full-length SIDs in IPv6-based segment routing and how to configure it on Juniper ...
Learn why the Trio and Express “Firewall Filters” (ACL) are truly unique in this industry. An article co-written by David Roy and Nicolas Fevrier ...
EVPN-On-A-Stick offers a fresh way to build networks by merging service functions directly into the main fabric. The result is simpler operations, ...
Automating the MPLS and SR network with Juniper Routing Director network optimization use case. Introduction Service providers and large ...
The procedure for building a multi-geography multi-cluster from three Red Hat OpenShift Container Platform (RHOCP) clusters. The constructed multi-cluster ...
Holistic design considerations for Large-Scale Enterprise WAN backbone networks, especially in the context of the evolving landscape shaped by connecting ...
A comprehensive overview of microbursts and their impact on network performance, with a focus on Juniper's QFX5K EVO platforms (QFX5220, QFX5130, ...
Live streaming audiences are now routinely reaching tens of millions of concurrent viewers. Combined with increasing bitrates for 4K/8K/360° video, ...
A detailed description of the latest line cards, fabric cards, power supply modules and fan trays introduced in the PTX10000 chassis, enabling the ...
Learn how APAC service providers are using Routing Active Testing to drive customer experience. We explore customers' motivations, Juniper’s solution ...
Junos 24.2R1 brings improvement for selected Juniper SRX series devices, particularly on MPLS and packet-mode/flow-mode processing. This post includes ...
A detailed description of the latest MX10000 Series line card LC4802, completing the existing LC4800 but with only QSFP ports. This new card is ...
YAMS (Yet Another MCP Server) is a specialized Model Context Protocol server designed to address the operational complexities of managing JCNR ...
Modern MPLS networks must support highly dynamic traffic patterns, especially in cloud and service provider environments. While RSVP-TE provides ...
In modern MPLS networks, managing traffic flows with precision is essential for maintaining performance and reliability. RSVP-TE provides a robust ...
There has been a lot of interest recently in Large Language Models (LLMs). One of the major applications of LLMs is conversational AI that enables ...
While destination-based forwarding works well for most traffic, certain services require more tailored handling – such as routing based on source’s ...
While Class of Service (CoS) ensures that priority traffic receives preferential treatment on congested interfaces, it does not inherently provide ...
Configuring site-to-site IPSec tunnels for devices that fall outside of the seamless integration capabilities Mist provides may seem daunting at ...
Class of Service (CoS) on an MPLS backbone is essential to ensure differentiated traffic handling and maintain QoS across complex, high-throughput ...
Let's highlight the flexibility of Multi-Node High Availability (MNHA) and JUNOS while providing design considerations when implementing MNHA in ...
And Why It Matters More Than You Think... Introduction: A Hidden Villain in AI Data Centers ...
Let's expand on the article on vSRX on mini-PC with details on another platform and use case. This time, the Juniper vSRX is deployed on a specific ...
Validating VPLS on the PTX10002-36QDD with Junos Evolved 24.2R2 for Metro Aggregation or Cloud Enterprise use cases. Introduction The ...
Network observability is a crucial component of an AI data center network, and TAP aggregation is a primary building block of its ecosystem. ...
Establishing SR-TE (CSPF) LSPs through inter OSPF areas is a challenge, as these LSPs rely on TED, and this TED is per OSPF area or IS-IS level. ...
In Julian Lucek’s blog post, Detection of Blackholes in Networks Using JRI , he explores how Juniper’s JRI (Juniper Resiliency Interface) can be ...
A detailed overview of Filter-Based Forwarding (FBF), also known as Policy-Based Routing (PBR), on MX Series routers (AFT), using common deployment ...
Packet Buffer Architecture on QFX5K-Series switches and various buffer tuning options available on these platforms to maximize the traffic burst ...
Example settings for connecting a VPN from the native IKEv2 client on Android 13+ to a Juniper SRX firewall. Due to the client's nature, use cases ...
Migrating from a multi-area OSPF with LDP to SR-MPLS is a transition that can be achieved with ease, provided you have a clear understanding of ...
Junos 25.4R1 enhances Layer 2 Protocol Tunneling in VXLAN tunnels and traditional VLANs by introducing support for more protocols, allowing MACsec ...
Juniper BNG CUPS (Control and User Plane Separation) Architecture supports the Broadband Forum TR-459 Issue 2 and 3 use cases. This blog announces ...
It’s all built into Windows. Leverage Windows PowerShell to a utomate Juniper Apstra without installing PowerShell as a language or ...
Junos OS 23.4R1 introduces Segment Routing Tactical Traffic Engineering (SR-TTE), a unique and innovative solution designed to address temporary ...
In this short post, we’ll look at configuring the SRX for 6-to-4 NAT (NAT64) when using IPv6-only clients with an external DNS64 server. We’ll also ...
A brief overview of the challenges faced in next-generation networking and data communication equipment using older Intermediate Bus Architecture ...
Describes the ability of the Juniper SRX, in conjunction with the CloudATP service, to enforce DNS query blocking through an API-driven, multi-tenant ...
Explore another use case of the Utility MIB feature [1] in Junos and EVO. We previously discussed this feature in a separate Techpost [2] in the ...
In this post, we’ll take a technical dive into Multi-Node High Availability (MNHA) on Juniper’s SRX platforms – a flexible approach to providing ...
How Paragon Automation (PA) automates workflow steps in provisioning L3VPN/EVPN/L2Circuit service based on declarative intent. This article ...
A detailed description of the latest MX10000 Series new line card, offering a mix of QSFP-DD and SFP-DD ports, and powered by three Trio 6 Forwarding ...
Juniper’s Converged Optical Routing Architecture – Unamplified Links. Explore the solution for High-Capacity Transport using 400G OpenZR+ Optics. ...
How can we monitor the SRv6 data plane, and collect statistics on the SRv6 SRH and tunnels with IPFIX option 315 / IMON? Introduction ...
Junos configuration details and KPIs of a real-life SRX4600 CGN deployment for an operator serving fixed customers. The SRX has been used as ...
Leak remote L3VPN routes to the global internet table or other VRFs is now possible with the introduction of the vpn-global-import feature coming ...
A transit packet walkthrough inside an MX Series Trio 6 ASIC, with all the internal details on the different memory and components involved in the ...
An innovative filtering solution for IPv4 traffic on MX Series, developed to handle five tuples matching criteria at scale. The MX platform ...
Explore the software and hardware differences you will encounter regarding switch connectivity when transitioning from the end-of-life QFX5100-48S ...
Discover how to implement micro-segmentation in your data center using Juniper Apstra and VXLAN Group-Based Policy. This comprehensive guide walks ...
The series is composed of the following posts: Introduction to BIER and BIER Underlay BIER Table Lookup BIER Overlay (present ...
A secure virtual cell site router (CSR + SecGW) functionality using Juniper Cloud Native Router or JCNR and Containerized SRX or cSRX so that customers ...
Second part of the 3-article series on BIER, detailing how is performed the lookup in the different BIER Tables. The series is composed of ...
An example of SRX AutoVPN functionality with Pre-Shared Keys in 3rd party mode; specifically with Linux/strongSwan spokes. While PKI-based ...
BGP Minimum ECMP is a new feature aiming at improving resiliency within DC networks. This article has been co-written by ...
A new innovative feature called Selective DLB (Dynamic Load Balancing), improving RDMA traffic ECMP. This article has been ...
First part of the 3-article series on BIER, discussing fundamental concepts and BIER underlay. The series is composed of the following posts: ...
A primer/survey for networking and cyber security enthusiasts interested in the evolution of this field. This article was initially published ...
Junos OS 23.4R1 introduces Mapping of Address and Port using Translation (MAP-T) as an adaptive service on Juniper MX Series routers equipped with ...
Efficient stateless load-balancing on Trio-based routers, offering optimal performance and reliability. Introduction Junos ...
BGP Route-Reflector is part of many networks, serving PE routers with reachability information. For this critical role, it’s important to have a ...
Express5 fungible shared memory architecture provides the foundation for a flexible memory scheme which increases scale and efficiency of memory ...
PTX10002-36QDD is the first router equipped with the new Juniper Express5 packet forwarding engine, a new deep-buffer 28.8Tbps package introducing ...
Another innovation for CUPS that enables unified Address Pool Management across CUPS controller(s) and Integrated BNGs. This use case simplifies ...
A Juniper BNG CUPS use-case that combines Smart Subscriber Load Balancing and High Availability Hot or Warm Standby across a group of User Planes ...
A practical yet simple demonstration of the SRX EVPN/VXLAN Type 5 ip-prefix-routes feature and related firewall policy processing across multiple ...
A Juniper BNG CUPS use-case that enables hitless maintenance for the user planes based on Broadband Forum TR-459 Issue 2. It improves the subscriber ...
The BGP Link-Bandwidth extension introduces an improvement to the BGP multipath, providing the ability to convey port speeds and propagate this ...
Juniper BNG CUPS (Control and User Plane Separation) is an emerging broadband architecture for control plane and user plane separation compliant ...
Introducing our latest Juniper Validated Design (JVD), addressing Metro Ethernet Business Services (EBS) with Juniper MX Series, ACX Series, and ...
BIER Interoperability testing verified between PTX10002-36QDD and other vendors during the EANTC 2024. Introduction ...
High-level functionality description of BIER as MVPN provider tunnels in the upcoming release of PTX Express 5. Introduction In Cheers! ...
What does differentiate the ACX7024X from the ACX7024 devices? In this short article, we will explain the differences and the motivation behind ...
Using Juniper vSRX on hardware with constrained resources, typically a mini-PC serving as flexible Internet gateway. Those are lately very popular ...
PTX Express 5 ASIC has full support for SRv6 with up to 8 carrier segment identifiers (SIDs) in a packet. That translates to 48 micro-SIDs (uSIDs), ...
Express5 has leap frogged in terms of Route scale, thanks to a novel approach in implementing the route table memory. ...
Filter in Express5 supports Flex Key match on any field in the first 128 bytes of the packet. Using software defined templates, firewall term matches ...
High-level overview of packet processing, exploring the evolution of throughput demands for these processing units, and discussing various methods ...
Introduction In this article, we’ll present a new open-source tool called OpenJTS (Juniper Telemetry Stack). Designed for effortless adoption, ...
In high multi-tenant environments such as Service Providers, Hosting Providers, or just large enterprises, having to deal with multiple internal ...
The new Juniper PTX10002-36QDD is here. It’s our first 800GigabitEthernet, deep-buffer, high-scale, router in the market, powered by Express 5. ...
Express 5 is Juniper's new ASIC for service providers and cloud networks, delivering 2x power efficiency, enhanced traffic insights, hardware-based ...
With network flow monitoring, you can troubleshoot application issues in a DC fabric with distributed, cloud-native, virtualized, and containerized ...
The ACX7000 family is growing fast. Today, we try a different approach to present this update of the ACX7000 portfolio. ...
A Deepdive on sFlow and IMON/IPFIX315 on MX Routers. ...
A minimalistic tool for bulk config changes in the scale-out system beyond options available in Auto-FBF CLI Introduction This TechPost is ...
Details of LLM inference workflow, how it differs from training, the many hardware/software optimizations that go into making inference efficient, ...
It is often stated that most network outages occur as a result of changes having been made to the system. There have been many notable examples ...
Although good old Junos SNMP MIB is very rich on every platform, occasionally some specific stats could have been handy. For example, number of ...
JCNR brings a lot of value by providing seamless connectivity between workloads across locations, public cloud boundaries, and workload form-factor, ...
Focusing on SRX firewall – the scaled out device - operational aspects in terms of removing device from service and bringing it back. Introduction ...
An overview of the different hardware profiles available on the ACX7000 Sries, and what is changing in the latest Junos releases. ...
Juniper Apstra supports Network Operating System (NOS) Upgrades for managed switches, allowing you to upgrade devices directly from the Apstra Server ...
Troubleshooting transit packet drops is not the easiest task for a network engineer. Sometimes, packets can be dropped in the forwarding ASIC at ...
GPU cluster scale, model partitioning, and traffic patterns between the GPUs for training workloads. Article initially ...
Unfortunately, black-holes sometimes occur in networks – packets disappear without trace for no apparent reason. Often the first symptom is when ...
Strategies to enhance the scale and performance of routing, aiming for faster convergence, improved stability, and optimized hardware utilization. ...
The benefits and versatility that Juniper brings with the PTP G.8275.1.ENH profile and the reasons behind its enhancements. ...
How Apstra clustering works with respect to Off-box agents and Probe processing units Introduction The Juniper Apstra standard implementation ...
The different thermal management solutions for cooling the high-power components in electronic systems (HPCs/Servers and network equipment), trends, ...
Starting in the 22.4R1 JUNOS release, MPC10E supports BNG subscriber access connections. Introduction Both MPC10E line card versions support ...
The Juniper Apstra SDK, written in Golang, integrates Apstra into the Terraform ecosystem, enabling an Apstra specific provider. Introduction ...
Solving the low entropy problem of the AI/ML training workloads in the Ethernet Fabrics. Guess how many active IP flows a single GPU normally ...
MX304 installs the full Internet tables at 47,000 routes per second, and we will show you how we are testing it. Introduction If you test ...
Apstra supports Drain Mode for managed switches, allowing the operator to gracefully drain traffic from devices without simply shutting down the ...
How Junos EVO implements the OpenConfig “platform” data model to expose many indicators/counters related to environmental data. Introduction ...
A description of the different configurations that can be rendered based on the state of the devices in Apstra. ...
Using Tags, Property Sets, and Jinja to simplify Apstra Freeform Day-2 Configuration. ...
How vJunos-switch is deployed as a VM, packaged within a container, on a bare metal server using the open source network emulation tool Containerlab. ...
From the basic constructs Freeform uses – Tags, Device Contexts, Property Sets, and Config Templates – to creating a simple Freeform blueprint, ...
Optimizing Failover Convergence for Enhanced Network Resilience with BGP PIC implementation in JUNOS. Introduction This blog will delve into ...
Apstra manages network security and workload isolation via the Policy Assurance feature. This feature allows you to create policies that are decoupled ...
A look at the semiconductor industry evolution, the inflection points, and how packaging and interconnect technologies evolved to make chiplets ...
A detailed configuration example that shows how to dual-home data center servers to Juniper leaf switches by using EZ-LAG, a simplified version ...
As a revolutionary multicast technology that allows efficient replication without requiring per-tree states in the network, Bit Index Explicit Replication ...
An essential operation in a working data center network would be the need to replace a device that has either failed or just needs to be re-allocated/reused ...
A brief introduction to the LLMs, the hardware challenges in training these models, and how the GPU and networking industry is evolving to optimize ...
Illustration of an IP/VPN MPLS network provisioned and operated with Apstra Freeform. Introduction ...
Juniper enhanced the initial DDoS protection feature with Suspicious Control Flow Detection (SCFD). It provides deeper analysis within a given protocol ...
How much traffic coming from Internet reach my different POPs? Can I monitor in real time the traffic coming from the “TOP Internet Talkers”? Is ...
How we can significantly reduce the power usage of the ACX7000 routers with basic configuration and simple best-practices. Introduction Power ...
Configlets allow the administrator to create custom configuration templates and automatically deploy them to devices based on intent. ...
Guide to the EVPN VXLAN based Optimised Inter-subnet Multicast (OISM) on Express4 based PTX10k platforms. ...
Did you know: numerous built-in functionalities with Junos-EVO are enabled by default and help reducing the power usage and carbon foot-print of ...
Key applications of BGP Classful Transport (BGP-CT), including path-diversity across multiple ASes, multi-AS paths that take into account sovereignty ...