Hi Suraj,
There is a requirement of one more NAT on the same SRX. But when I configure it, i get same context error. Pls refer the configuration applied and the error below:-
set security nat source pool Pool1 address 203.17.67.62/32
set security nat source pool Pool2 address 203.17.67.28/32
set security nat source rule-set 1 from zone VAS_SMS
set security nat source rule-set 1 to interface st0.1
set security nat source rule-set 1 rule One match source-address 10.10.136.21/32
set security nat source rule-set 1 rule One then source-nat pool Pool1
set security nat source rule-set 2 from zone VAS_SMS
set security nat source rule-set 2 to interface st0.3
set security nat source rule-set 2 rule Two match source-address 10.10.136.21/32
set security nat source rule-set 2 rule Two then source-nat pool Pool2
set security nat destination pool Pool1 address 10.10.136.21/32
set security nat destination rule-set 1 from routing-instance trust-vr
set security nat destination rule-set 1 rule 1 match destination-address 203.17.67.28/32
set security nat destination rule-set 1 rule 1 then destination-nat pool Pool1
set security nat destination rule-set 1 rule 2 match destination-address 203.17.67.62/32
set security nat destination rule-set 1 rule 2 then destination-nat pool Pool1
set security nat source pool Pool3 address 203.17.67.72/32
set security nat source pool Pool4 address 203.17.67.38/32
set security nat source rule-set 3 from zone VAS_SMS
set security nat source rule-set 3 to interface st0.1
set security nat source rule-set 3 rule One match source-address 10.10.136.22/32
set security nat source rule-set 3 rule One then source-nat pool Pool3
set security nat source rule-set 4 from zone VAS_SMS
set security nat source rule-set 4 to interface st0.3
set security nat source rule-set 4 rule Two match source-address 10.10.136.22/32
set security nat source rule-set 4 rule Two then source-nat pool Pool4
set security nat destination pool Pool2 address 10.10.136.22/32
set security nat destination rule-set 2 from routing-instance trust-vr
set security nat destination rule-set 2 rule 1 match destination-address 203.17.67.38/32
set security nat destination rule-set 2 rule 1 then destination-nat pool Pool2
set security nat destination rule-set 2 rule 2 match destination-address 203.17.67.72/32
set security nat destination rule-set 2 rule 2 then destination-nat pool Pool2
{primary:node0}[edit]
admin@HCSF1_SRX# commit check
[edit security nat destination]
'rule-set 2'
rule-set 2 and rule-set 1 have same context.
error: configuration check-out failed
{primary:node0}[edit]
admin@HCSF1_SRX#