Ethernet Switching
Highlighted
Ethernet Switching

EX2200-c Capabilities

‎10-01-2013 01:31 PM

Hello,

 

I currently have an SRX-210H-PoE deployed.  I am wondering, can an EX2200-C-12P be substituted for it?

 

They both run Junos, but does that mean that I can configure firewall policies, etc, on the EX2200-C's interfaces as I have with the SRX-210?  I understand the EX2200-C will not manage an AX-411 wireless access point, but that is not a concern in this case.

 

Basically, I am looking for a device with 8+ ge ports that can act as a switch, but also as a router to an untrusted zone (yes, the Internet).  The EX2200-c looks like it might be a good candidate.

 

Thanks for clarifying, in any case.

5 REPLIES 5
Highlighted
Ethernet Switching

Re: EX2200-c Capabilities

[ Edited ]
‎10-01-2013 03:30 PM

Additionally, I am wondering if either of the "uplink" ethernet ports can be used as family ethernet-switching access type ports?  Are they also ge or fe ports?

 

An intriguing device, if it can be unilaterally repurposed to act as a security device as well as a switch.

 

Thanks for the expertise.

Highlighted
Ethernet Switching

Re: EX2200-c Capabilities

‎10-01-2013 04:25 PM

???? It is a switch not a router. It has very basic routing capabilities but is missing many features of the SRX.

 

Say goodbye to NAT, Policies, VPNs and much much more.

 

If you want lots of gigabit ports get the SRX220.

 

The EX2200-C is great when used WITH an SRX.

Highlighted
Ethernet Switching
Solution
Accepted by topic author Joebocop
‎08-26-2015 01:27 AM

Re: EX2200-c Capabilities

‎10-01-2013 05:40 PM

anything above static routes I believe requires an Enhanced Feature License, but it can support OSPF, PIM, etc (to lower scale than say an EX4200).  Not sure about IPv6 routing support right now.  For as small and as cheap as it is, it is very feature rich -- anything L2 you would need is there.

 

It has no capability for Stateful firewall, NAT, etc due to hardware limitations (it is a switch...not a firewall).  

 

As the above said, its a great device to use in conjunction with an SRX.

 

 

The uplink ports can operate as switch ports, and should be able to operate at 10/100/1000 based on whatever optic you insert (or use the copper uplink ports)

 

 

Will

Highlighted
Ethernet Switching

Re: EX2200-c Capabilities

‎10-02-2013 10:22 AM

Thanks for the info guys.  As you can tell, I'm new to the Juniper stuff, and had heard that the monolithic OS meant that all functionality was available on all devices, but that their hardware was optimised for specific tasks.  I wondered, therefore, if an EX2200-C could perform tasks such as NAT, but in the OS at a greater performance hit or something to that effect.

 

I'll look into toher solutions.  Thanks again.

Highlighted
Ethernet Switching

Re: EX2200-c Capabilities

[ Edited ]
‎10-02-2013 10:31 AM

The concept of the monolithic OS is really focused around a single command set. Juniper has to optimize the code for each platform. Imagine the size of the image you would need to carry on every box if every bit of functionaltiy was enabled for every platform.

 

There is obviously a real difference between the switching world and the router / FW world. So you won't find NAT or security policies on a switch. Having said that, you will find a lot of this functionality in the router space.

 

 

If you boot up a factory default J series router you will find it comes up with security policies enabled and you can't login through any other I/F but the console port as there is no ssh turned on in system services. 

 

Hoep that makes sense logically. 

Kevin Barker
JNCIP-SEC
JNCIS-ENT, FWV, SSL, WLAN
JNCIA-ER, EX, IDP, UAC, WX
Juniper Networks Certified Instructor
Juniper Networks Ambassador

Juniper Elite Reseller
J-Partner Service Specialist - Implementation

If this worked for you please flag my post as an "Accepted Solution" so others can benefit. A kudo would be cool if you think I earned it.
Feedback