Screen OS

last person joined: 8 months ago 

This is a legacy community with limited Juniper monitoring.
  • 1.  SSG 520 https port forwarding

    Posted 08-24-2011 01:58

    I have a ssl vpn box in my network, i am trying to forward the https port from my firewall to ssl vpn , i am getting error port 443 is for the managment of the box. how can i fix this issue



  • 2.  RE: SSG 520 https port forwarding

    Posted 08-24-2011 08:31

    I think "unset interfaceX/X manage ssl" should do the trick. Also "unset admin http redirect" might be needed, not sure if it's necessary. Now you should be able to do needed NAT.



  • 3.  RE: SSG 520 https port forwarding

    Posted 08-28-2011 04:51

    I tried the same ,but still i am getting the error " Not supported service: (ip:x.x.x.x/port:443) is for management of the box. my firmware version is  6.0.0r4.0



  • 4.  RE: SSG 520 https port forwarding
    Best Answer

     
    Posted 08-28-2011 06:36

    Hi,

     

    two things you can try:

    - go to Configuration > Admin > Management and set the HTTPS port to a different value (4430 for example)

    - it's possible that the above doesn't work due to a bug in 6.0.0. In that case you could try this:

    http://www.juniperforum.com/index.php/topic,5305.msg21153.html#msg21153

     

    Regards,

    Steve

     



  • 5.  RE: SSG 520 https port forwarding

    Posted 08-28-2011 09:30

    Thanks  a Lot Steve ,It worked for me.



  • 6.  RE: SSG 520 https port forwarding

    Posted 08-25-2011 18:54

    Hi Vipin,

    We have a very similar setup on my network. Are you using the ip address on the firewall untrust interface to VIP to the ssl vpn box?

     

    Xuan



  • 7.  RE: SSG 520 https port forwarding

    Posted 08-28-2011 04:41

    Yea i am using the ip address of the untrust interface of the firewall