Junos Automation (Scripting)
Highlighted
Junos Automation (Scripting)

RPM with dns prob type

‎06-14-2020 04:44 PM

Hello,

 

I am in the phase of migrating from legacy Cisco router to Juniper one, while reading Cisco configs, I found static routes (terms of DNS redundancy) created to the same route using different next-hop preferring one over the other via using preference + sla track, and Type of operation to perform there is dns as below:

 

ip route 212.212.212.1 255.255.255.255 94.94.94.1 name DNS track 5

ip route 212.212.212.1 255.255.255.255 94.94.94.2 100 name DNS track 10


ip sla 5
dns www.abc.com name-server 94.94.94.1

 

ip sla 10
dns www.abc.com name-server 94.94.94.2

 

if I read this config correctly:

- if 94.94.94.1 can resolve DNS for www.abc.com ---> accept this static route with preference 1

- if 94.94.94.2 can resolve DNS for www.abc.com ---> accept this static route with preference 100

And then 94.94.94.1 will be the active one due to the lowest preference.

 

How can I transform this sla/track to Junos? ie how can I specify within probe the following:

- Type of operation to perform: DNS

- name-server

 

I found into rpm probe an option (destination-port) but I can't assign 53 (DNS) to, so I would say it isn't the correct way to be defined.

 

Thanks

1 REPLY 1
Highlighted
Junos Automation (Scripting)

Re: RPM with dns prob type

‎06-14-2020 07:37 PM

Hello,

 

DNS probes are not supported for JUNOS RPM

https://www.juniper.net/documentation/en_US/junos/topics/concept/security-rpm-overview.html

 

The device sends out the following probe types:

  • HTTP GET request at a target URL

  • HTTP GET request for metadata at a target URL

  • ICMP echo request to a target address (the default)

  • ICMP timestamp request to a target address

  • UDP ping packets to a target device

  • UDP timestamp requests to a target address

  • TCP ping packets to a target device

UDP and TCP probe types require that the remote server be configured as an RPM receiver so that it generates responses to the probes.



 

 

HTH

Thx

Alex

_____________________________________________________________________

Please ask Your Juniper account team about Juniper Professional Services offerings.
Juniper PS can design, test & build the network/part of the network as per Your requirements

+++++++++++++++++++++++++++++++++++++++++++++

Accept as Solution = cool !
Accept as Solution+Kudo = You are a Star !
Feedback