G'day,
Here are ways we can config multiple interfaces with security-zones:
# method 1
security-zone dmz {
interfaces {
fe-0/0/2.0 {
host-inbound-traffic {
system-services {
all;
}
}
}
fe-0/0/3.0 {
host-inbound-traffic {
system-services {
all;
}
}
}
}
}
or
# Method 2
security-zone dmz {
host-inbound-traffic {
system-services {
all;
}
}
interfaces {
fe-0/0/2.0;
fe-0/0/3.0;
}
}
Q1, Is there any difference between the two methods? and
I was wondering if we can do this:
# Method 3
security-zone dmz {
interfaces {
[ fe-0/0/2.0 fe-0/0/3.0 ];
{
host-inbound-traffic {
system-services {
all;
}
}
}
}
}
Any comments are welcomed.
Cheers,
Bob