Hi Lim,
The SRX does not support interface natting. All natting has to be doen in the NAT policy. To simulate the same natting you can use this policy:
security {
nat {
source {
rule-set outbound-source-nat {
from zone trust;
to zone untrust;
rule default {
match {
source-address 0.0.0.0/0;
}
then {
source-nat {
interface;
}
}
}
}
}
}
To enter this in your config:
set security nat source rule-set outbound-source-nat from zone trust
set security nat source rule-set outbound-source-nat to zone untrust
set security nat source rule-set outbound-source-nat rule default match source-address 0.0.0.0/0
set security nat source rule-set outbound-source-nat rule default then source-nat interface
And a commit of course.