SRX

last person joined: 4 days ago 

Ask questions and share experiences about the SRX Series, vSRX, and cSRX.
  • 1.  SRX3K translate route-map from screenOS

    Posted 05-21-2014 07:38

    Hello guys,

     

    i'm translating (i'm a newbie to juniper) a config from screenOS to junos (SRX3600) and i found these lines :

     

    set access-list 10
    set access-list 10 deny ip X.X.X.X/24 5
    set access-list 10 deny ip X.X.X.X/24 10
    set access-list 10 deny ip X.X.X.X/24 15
    set access-list 10 deny ip X.X.X.X/24 20
    set access-list 10 deny ip X.X.X.X/24 25
    set access-list 10 deny ip X.X.X.X/24 26
    set access-list 10 permit ip 0.0.0.0/0 50
    set route-map name "routemap1" permit 5
    set match ip 10

     

     

    what is the utiity of this? and how can i translate it to junos SRX please?

     

    thank you in advance.

     

    Br,



  • 2.  RE: SRX3K translate route-map from screenOS
    Best Answer

    Posted 05-21-2014 08:52

    Hi,

     

    This might help you out:

     

    https://migration-tools.juniper.net/

     

    Giving something like the below:

     

    policy-options {
        policy-statement accesslist-10 {
            term term-1 {
                from {
                    route-filter 10.10.10.0/24 exact;
                    route-filter 10.10.11.0/24 exact;
                    route-filter 10.10.12.0/24 exact;
                    route-filter 10.10.13.0/24 exact;
                    route-filter 10.10.14.0/24 exact;
                    route-filter 10.10.15.0/24 exact;
                }
                then reject;
            }
            term term-2 {
                from route-filter 0.0.0.0/0 exact;
                then accept;
            }
            term deny {
                then reject;
            }
        }
    }