I'm trying to setup a vSRX that has 4 interfaces. FXP0, GE-0/0/0, 1, & 2. What are the best practices for configuring management traffic like syslog, authentication, DNS lookups? Should I be sending this traffic via the fxp0 port or should I configure a loopback address? Or should I just enable SSH to one of my ge-0/0 interfaces and just start using that as my main management access and treat the FXP0 as an OOB backup lifeline interface?
I recommend you to use FXP0 interface only for management. Kindly use any of the GE-0/0/0, 1, & 2 to configure syslog, authentication and DNS lookups.
You can configure the Syslog logging in the stream mode following the below documents. This will help you to offload the Routing engine and will forward all the syslog related traffic from Packet forwarding engine.