[j-nsp] SRX Reliability

Phil Mayers p.mayers at imperial.ac.uk
Wed Jun 12 08:53:15 EDT 2013


On 12/06/13 13:41, Andrew Gabriel wrote:
> On Wed, Jun 12, 2013 at 3:58 PM, Phil Mayers <p.mayers at imperial.ac.uk
> <mailto:p.mayers at imperial.ac.uk>>wrote:
>
>     We recently evaluated an SRX 3600, and modulo some minor cosmetic
>     bugs and one major one (PSN-2012-10-754, fixed in later software)
>     they seemed solid to me. We tested IPv4 & IPv6 layer4 firewalling,
>     AppFW, dynamic routing with BGP and multicast. It all seemed to work
>     ok, and we have gone ahead and purchased.
>
>     It might help if you could specify what sort of things you want to
>     do on them e.g. IPsec, IDP, inline AV/web filtering (which the 3000s
>     can't do) and so forth.
>
>
> Hi Phil,
>
> Thanks, we are mainly looking at basic FW, VPN, and routing capability,
> which we need to be rock solid. We do not intend to use the IPS and UTM
> type features at the moment.

The basic firewalling seemed solid, as did the dynamic routing - it is 
JunOS after all - but I didn't test VPN, so can't comment on that.

We were running 12.1R6.5.


More information about the juniper-nsp mailing list