Search

1 to 9 of 9
Sort by

Discussion Post
srx5400 HA cluster and dual SPC

I am aware srx5400 can have only one RE so only control port 0 (em0) can be used. All of dual control link configuration references are for srx5600/5800 when two REs are present - when both HA control port 1 and 0 on the SPC are used. But what about dual control port 0, from each of the two SPCs? So currently i've got: control-ports ( fpc 1 port 0; fpc 4 port 0; ) Can i have this? control-ports ( fpc 0 port 0; fpc 1 port 0; fpc 3 port 0; fpc 4 port 0; ) Also to note, the FPC0 SPC which isn't connected to its counterpart on the other node doesn't have the HA led ON


Discussion Post
SRX 1500 HA over L2 question

I want to konw is control port tag enabled on srx 1500?


Discussion Thread 5
SRX 1500 HA over L2 question

Focus Search - I want to konw is control port tag enabled on srx 1500?...


Discussion Reply
RE: storm-control

You can then make graphs on wireshark and check out the average/maximum traffic load for the ports; and then configure appropriate values


Discussion Post
SRX240 cluster with LACP through a Cisco switch

Here is the config from the SRXs and the switch: set groups node0 interfaces fxp0 unit 0 family inet address 10.X.Y.2/24 set groups node1 interfaces fxp0 unit 0 family inet address 10.X.Y.3/24 set chassis cluster reth-count 1 set chassis cluster redundancy-group 1 node 0 priority 200 set chassis cluster redundancy-group 1 node 1 priority 100 set chassis cluster redundancy-group 1 interface-monitor ge-0/0/14 weight 255 set chassis cluster redundancy-group 1 interface-monitor ge-0/0/15 weight 255 set chassis cluster redundancy-group 1 interface-monitor ge-5/0/15 weight 255 set chassis cluster redundancy-group 1 interface-monitor ge-5/0/14 weight 255 set security zones security-zone MGMT host-inbound-traffic system-services ping set security zones security-zone MGMT host-inbound-traffic protocols all set security zones security-zone MGMT interfaces reth1.100 set security zones security-zone MGMT interfaces reth1.104 set security zones security-zone MGMT interfaces reth1.108 set security zones security-zone MGMT interfaces reth1.254 set interfaces ge-0/0/14 gigether-options redundant-parent reth1 set interfaces ge-0/0/15 gigether-options redundant-parent reth1 set interfaces ge-5/0/14 gigether-options redundant-parent reth1 set interfaces ge-5/0/15 gigether-options redundant-parent reth1 set interfaces fab0 fabric-options member-interfaces ge-0/0/2 set interfaces fab1 fabric-options member-interfaces ge-5/0/2 set interfaces reth1 vlan-tagging set interfaces reth1 redundant-ether-options redundancy-group 1 set interfaces reth1 redundant-ether-options minimum-links 1 set interfaces reth1 redundant-ether-options lacp passive set interfaces reth1 redundant-ether-options lacp periodic slow set interfaces reth1 unit 100 vlan-id 100 set interfaces reth1 unit 100 family inet address 10.X.Y.1/24 set interfaces reth1 unit 104 vlan-id 104 set interfaces reth1 unit 104 family inet address 10.X.Y.1/22 set interfaces reth1 unit 108 vlan-id 108 set interfaces reth1 unit 108 family inet address 10.X.Y.1/23 set interfaces reth1 unit 254 vlan-id 254 set interfaces reth1 unit 254 family inet address 10.X.Y.1/24 vlan 100 name MGMT vlan 104 name whatever vlan 108 name whatever108 vlan 33 name control vlan 34 name fabric vlan 254 name vlan254 interface Port-channel10 switchport trunk encapsulation dot1q switchport trunk allowed vlan 100,104,108,254 switchport mode trunk ! interface Port-channel20 switchport trunk encapsulation dot1q switchport trunk allowed vlan 100,104,108,254 switchport mode trunk !


Blog Entry
Expert Advice: Creating Repeatable Labs and Demos Using Automation

-- - hosts: qfx3500-8 roles: - Juniper.junos connection: local gather facts: no tasks: - name: Overwrite the default configuration file to qfx3500-8 junos install config: user=username passwd=password123 port=830 host=(( inventory hostname )) file=/root/scg-automation/qfx3500-default.conf overwrite=yes logfile=/root/scg-automation/qfx-junos-config.log The item above shows the three dashes at the top of all YAML files followed by details to install a new configuration file (file=/root/scg-automation/qfx3500-default.conf) on the host qfx3500-8 (details of this host are included in /etc/ansible/hosts)


Discussion Thread 4
srx5400 HA cluster and dual SPC

Focus Search - I am aware srx5400 can have only one RE so only control port 0 (em0) can be used


Discussion Thread 6
storm-control

Focus Search - To check if a port has been error-disabled by storm-control, you can use "show ethernet-switching interfaces" command. In case you haven't configured the storm-control action to disable the port, then a syslog message should be generated reflecting that storm-control has started kicking in on the interface


Discussion Thread 9
SRX240 cluster with LACP through a Cisco switch

Focus Search - Here is the config from the SRXs and the switch: set groups node0 interfaces fxp0 unit 0 family inet address 10.X.Y.2/24 set groups node1 interfaces fxp0 unit 0 family inet address 10.X.Y.3/24 set chassis cluster reth-count 1 set chassis cluster redundancy-group 1 node 0 priority 200 set chassis cluster redundancy-group 1 node 1 priority 100 set chassis cluster redundancy-group 1 interface-monitor ge-0/0/14 weight 255 set chassis cluster redundancy-group 1 interface-monitor ge-0/0/15 weight 255 set chassis cluster redundancy-group 1 interface-monitor ge-5/0/15 weight 255 set chassis cluster redundancy-group 1 interface-monitor ge-5/0/14 weight 255 set security zones security-zone MGMT host-inbound-traffic system-services ping set security zones security-zone MGMT host-inbound-traffic protocols all set security zones security-zone MGMT interfaces reth1.100 set security zones security-zone MGMT interfaces reth1.104 set security zones security-zone MGMT interfaces reth1.108 set security zones security-zone MGMT interfaces reth1.254 set interfaces ge-0/0/14 gigether-options redundant-parent reth1 set interfaces ge-0/0/15 gigether-options redundant-parent reth1 set interfaces ge-5/0/14 gigether-options redundant-parent reth1 set interfaces ge-5/0/15 gigether-options redundant-parent reth1 set interfaces fab0 fabric-options member-interfaces ge-0/0/2 set interfaces fab1 fabric-options member-interfaces ge-5/0/2 set interfaces reth1 vlan-tagging set interfaces reth1 redundant-ether-options redundancy-group 1 set interfaces reth1 redundant-ether-options minimum-links 1 set interfaces reth1 redundant-ether-options lacp passive set interfaces reth1 redundant-ether-options lacp periodic slow set interfaces reth1 unit 100 vlan-id 100 set interfaces reth1 unit 100 family inet address 10.X.Y.1/24 set interfaces reth1 unit 104 vlan-id 104 set interfaces reth1 unit 104 family inet address 10.X.Y.1/22 set interfaces reth1 unit 108 vlan-id 108 set interfaces reth1 unit 108 family inet address 10.X.Y.1/23 set interfaces reth1 unit 254 vlan-id 254 set interfaces reth1 unit 254 family inet address 10.X.Y.1/24 vlan 100 name MGMT vlan 104 name whatever vlan 108 name whatever108 vlan 33 name control vlan 34 name fabric vlan 254 name vlan254 interface Port-channel10 switchport trunk encapsulation dot1q switchport trunk allowed vlan 100,104,108,254 switchport mode trunk ! interface Port-channel20 switchport trunk encapsulation dot1q switchport trunk allowed vlan 100,104,108,254 switchport mode trunk !