Category: juniper

Juniper SRX Screens + Dynamic VPNs

Little tip with SRX Dynamic VPNs and ‘security screens’ on the VPN’s ingress zone I stumbled across during my JNCIE-SEC study. UPDATE (20120401): Seems Juniper has addressed and fixed this bug … More info: http://kb.juniper.net/InfoCenter/index?page=content&id=KB21713&actp=RSS  It seems you can not have the ‘IP Spoofing’ screen enabled when sending IPSec Dynamic VPN traffic ingressing into the zone with [ View Post… ]

Junos IPv6 Management …

What IPv6 system user output looks like … [plain] cooper@noona-gw> show system users 9:15AM up 13:29, 1 user, load averages: 0.36, 0.28, 0.23 USER TTY FROM LOGIN@ IDLE WHAT cooper p0 2001:470:1f05:78b:224:1dff:fe71:9f70 9:15AM – -cli (cli) [/plain]

Microsoft NPS Server + Juniper JUNOS VSA

A lot of companies run Microsoft’s Active Directory AAA infrastructure. A nice add on to AD (apart from my favorite ‘Services for UNIX’) is the Network and Policy Server (NPS). Using this RADIUS server with any radius speaking client is a nice addon that allows the majority of Network infrastructure to use AD as it’s authoriative [ View Post… ]