hi all,
I'm totally stuck.
I'm trying to configure SRX210B but can't get it work 😞
Would anyone care to help the newbie ?
Normally I'd put the config here, but it's just one big pile of nothing, so the best would be to just start from scratch.
details are as follow:
public (connection) subnet: 79.110.203.160/30. My ip beeing 161, my default gateway 162
my routed (DMZ) subnet is: 79.110.203.152/29
mu LAN subnet is: 192.168.1.0/24
now, there are few things.
I can't use connecting subnet for internet access, I have to SNAT my LAN traffic to any addres from DMZ
I'd like to terminate DMZ class on the router and use DNAT to pass traffic to some services in LAN, i.e.:
a) 79.110.203.153:2222 -> 192.168.1.254:22
b) 79.110.203.153:443 -> 192.168.1.200:443
c) 79.110.203.154:443 -> 192.168.1.201:443
also, I'd like to be able to acces SRX from internet via ssh on IP 79.110.203.153 and ping it from internet.
You'll probaply point me to various juniper KB articles, which I can assure you I already went through, but for some reason, couldn't make it work.
For example something as simple as:
set security zones security-zone untrust host-inbound-traffic system-services ping
just doesn't work on 79.110.203.161/30 nor 79.110.203.153/29
I'm probaply terminating DMZ subnet incorrectly, but I have no idea what I'm doing wrong 😞