[j-nsp] SRX and "any" policy

Sven Juergensen (KielNET) s.juergensen at kielnet.de
Mon Jan 18 02:58:52 EST 2010


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Hi list,

in ScreenOS-lingo, the 'any' for a zone
does just that. in JUNOS on the branch-SRX
firewalls, there apparently isn't an equi-
valent. So, one might think that it's poss-
ible to define an 'any' zone and put every
interface into it. Well, the interfaces poof
when assigned to a different zone.

Is there any way to have an 'any' zone on
the SRX boxes? Surely I am missing something.

Thanks and regards,

Mit freundlichen Gruessen,

	i. A. Sven Juergensen

- -- 
Fachbereich
Netze und Rechenzentren

KielNET GmbH
Gesellschaft fuer Kommunikation
Preusserstr. 1-9, 24105 Kiel

Telefon : 0431 2219-053
Mobil   : 0170 403 5600
Telefax : 0431 2219-005
E-Mail  : s.juergensen at kielnet.de
Internet: http://www.kielnet.de

Geschaeftsfuehrer Eberhard Schmidt
HRB 4499 (Amtsgericht Kiel)

PGP details at
http://pgp.kielnet.de/sjuergensen/

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v2.0.10 (Darwin)

iEYEARECAAYFAktUFLwACgkQnEU7erAt4TIORACfYeC8whDkIg4hbiDK0QIEreGS
14cAn0svLkHof8o0YrcOJeXW5PDjf6OI
=QV1i
-----END PGP SIGNATURE-----


More information about the juniper-nsp mailing list