Differences

This shows you the differences between two versions of the page.

Link to this comparison view

Both sides previous revision Previous revision
Next revision
Previous revision
Next revision Both sides next revision
en:jobs:juniper_srx_pat_dns_2isp [2013/01/03 00:52]
admin [Introduction.]
en:jobs:juniper_srx_pat_dns_2isp [2013/01/03 01:04]
admin [Solution.]
Line 10: Line 10:
    
  ==== Solution. ====  ==== Solution. ====
- 
-it is supposed that GLOBAL IP addresses on Juniper and GLOBAL IP addresses for DNS are different. 
  
 1. Configure two security zones on the Juniper:\\ 1. Configure two security zones on the Juniper:\\
Line 44: Line 42:
  
  
-3. Disable the DNS security alg (without one the second ISP will not work)+3. Disable the DNS security alg (without one the second ISP will not work.)
   ​   ​
   {primary:​node1}[edit]   {primary:​node1}[edit]
Line 70: Line 68:
    set firewall family inet filter PRULE_ISP-2 term default then accept    set firewall family inet filter PRULE_ISP-2 term default then accept
  
-7. Apply policy routing on a interface ​of ISP-1+7. Apply policy routing on a interface ​that is connected to ISP-1
  
    ​{primary:​node1}[edit]    ​{primary:​node1}[edit]
    set interfaces reth0 unit 0 family inet filter output PRULE_ISP-2    set interfaces reth0 unit 0 family inet filter output PRULE_ISP-2
  
-8. Configure PPROXY-ARP ​(if require)+8. Configure PPROXY-ARP
  
    ​{primary:​node1}[edit]    ​{primary:​node1}[edit]
en/jobs/juniper_srx_pat_dns_2isp.txt ยท Last modified: 2013/01/05 23:40 by admin
Recent changes RSS feed Debian Powered by PHP Valid XHTML 1.0 Valid CSS Driven by DokuWiki