SRX Services Gateway
Reply
Visitor
suwandy
Posts: 6
Registered: ‎10-13-2010
0
Accepted Solution

how to configure SSH or web management to connected my Srx from outside ?

-hi-

 

 

I have configure my srx240, I cannot remote from outside using SSH or Web management. I can access with SSH,Telnet and web management from inside only.   could any one help me to solve this configuration?  this is my srx configuration. thk for help.  -urgently-

 

 

Contributor
Duga
Posts: 50
Registered: ‎10-11-2010
0

Re: how to configure SSH or web management to connected my Srx from outside ?

Hi

 

 

Regarding your configuration (specially your zones), what do you mean with inside and outside ?

 

 

Super Contributor
oldtimer
Posts: 227
Registered: ‎11-06-2007
0

Re: how to configure SSH or web management to connected my Srx from outside ?

Which zone are you coming in from?  If you are coming in from the untrust zone, then based on your configuration, you will not be able to manage from untrust.  You don't have host-inbound-traffic system services set for http.  Add http to your host-inbound-traffic system-services for the untrust zone, or whichever zone you are coming in from, then try it again.

Distinguished Expert
keithr
Posts: 979
Registered: ‎09-10-2009
0

Re: how to configure SSH or web management to connected my Srx from outside ?

If by "outside" you mean "untrust", then to echo and add on to what oldtimer said:

 

 

set security zones security-zone untrust interfaces ge-0/0/0.0 host-inbound-traffic ssh
set security zones security-zone untrust interfaces ge-0/0/0.0 host-inbound-traffic http
set security zones security-zone untrust interfaces ge-0/0/0.0 host-inbound-traffic https

 

 

You'll also need to add the ge-0/0/0.0 interface to the system services:

 

 

set system services web-management http interface ge-0/0/0.0
set system services web-management https interface ge-0/0/0.0

 

-kr

 

 

-kr


---
If this solves your problem, please mark this post as "Accepted Solution."
Kudos are always appreciated.
Visitor
suwandy
Posts: 6
Registered: ‎10-13-2010
0

Re: how to configure SSH or web management to connected my Srx from outside ?

-hi-

 

 

the inside and outside which I mean is trusted and untrusted.  Thanks.

Visitor
suwandy
Posts: 6
Registered: ‎10-13-2010
0

Re: how to configure SSH or web management to connected my Srx from outside ?

-hi-

 

 

thank you for your helping solution.  Now, I can solving my problem. 

Visitor
suwandy
Posts: 6
Registered: ‎10-13-2010
0

Re: how to configure SSH or web management to connected my Srx from outside ?

-hi-

 

 

 

specially thank for keithr, your configuration is helpfull  for me to solving my problem. 

Moderator
zanyterp
Posts: 2,270
Registered: ‎11-19-2007
0

Re: how to configure SSH or web management to connected my Srx from outside ?

Does this command work only on specific versions of JUNOS? I recently received an SRX and am trying to configure the same for allowing remote SSH access. When I use the guide below, I receive a syntax error on ssh.

Super Contributor
AdamLin
Posts: 167
Registered: ‎08-02-2010
0

Re: how to configure SSH or web management to connected my Srx from outside ?

The commands are just missing the bolded part:


set security zones security-zone untrust interfaces ge-0/0/0.0 host-inbound-traffic system-services ssh

set security zones security-zone untrust interfaces ge-0/0/0.0 host-inbound-traffic system-services http

set security zones security-zone untrust interfaces ge-0/0/0.0 host-inbound-traffic system-services https

Regards,
Adam

(if my post helped solve your problem, mark it as accepted solution)
Distinguished Expert
keithr
Posts: 979
Registered: ‎09-10-2009
0

Re: how to configure SSH or web management to connected my Srx from outside ?

Yeah, I'm not sure how that got left out of my snippets since I copied/pasted from a live configuration file.

 

Weird...

-kr


---
If this solves your problem, please mark this post as "Accepted Solution."
Kudos are always appreciated.
Copyright© 1999-2013 Juniper Networks, Inc. All rights reserved.