[Contents] [Prev] [Next] [Index] [Report an Error]

CLI Configuration

  1. Basic chassis cluster
    user@host> set chassis cluster node 0 cluster-id 1
    warning: A reboot is required for chassis cluster to be enabled
    user@host> set chassis cluster node 1 cluster-id 1 reboot
    Successfully enabled chassis cluster. Going to reboot now.
  2. Management interface
    {primary:node1}
    user@host# set groups node0 system host-name J2320-A
    {primary:node1}
    user@host# set groups node0 interfaces fxp0 unit 0 family inet address 192.168.3.110/24
    {primary:node1}
    user@host#set groups node1 system host-name J2320-B
    {primary:node1}
    user@host# set groups node1 interfaces fxp0 unit 0 family inet address 192.168.3.111/24
    {primary:node1}
    user@host# set apply-groups “${node}”
  3. Fabric interface
    {primary:node1}
    user@host# set interfaces fab0 fabric-options member-interfaces ge-0/0/1
    {primary:node1}
    user@host# set interfaces fab1 fabric-options member-interfaces ge-4/0/1
  4. Redundancy groups
    {primary:node1}
    user@host# set chassis cluster reth-count 2
    {primary:node1}
    user@host# set chassis cluster heartbeat-interval 1000
    {primary:node1}
    user@host# set chassis cluster heartbeat-threshold 3
    {primary:node1}
    user@host# set chassis cluster node 0
    {primary:node1}
    user@host# set chassis cluster node 1
    {primary:node1}
    user@host# set chassis cluster redundancy-group 0 node 0 priority 100
    {primary:node1}
    user@host# set chassis cluster redundancy-group 0 node 1 priority 1
    {primary:node1}
    user@host# set chassis cluster redundancy-group 1 node 0 priority 100
    {primary:node1}
    user@host# set chassis cluster redundancy-group 1 node 1 priority 1
    {primary:node1}
    user@host# set chassis cluster redundancy-group 1 preempt
    {primary:node1}
    user@host# set chassis cluster redundancy-group 1 interface-monitor fe-1/0/0 weight 255
    {primary:node1}
    user@host# set chassis cluster redundancy-group 1 interface-monitor fe-5/0/0 weight 255
    {primary:node1}
    user@host# set chassis cluster redundancy-group 1 interface-monitor ge-0/0/0 weight 255
    {primary:node1}
    user@host# set chassis cluster redundancy-group 1 interface-monitor ge-4/0/0 weight 255

    (Optional) Redundancy group 0 (to monitor physical interfaces if data processing and control plane functions are in same node)

    {primary:node1}
    user@host# set chassis cluster redundancy-group 0 interface-monitor fe-1/0/0 weight 255
    {primary:node1}
    user@host# set chassis cluster redundancy-group 0 interface-monitor fe-5/0/0 weight 255
    {primary:node1}
    user@host# set chassis cluster redundancy-group 0 interface-monitor ge-0/0/0 weight 255
    {primary:node1}
    user@host# set chassis cluster redundancy-group 0 interface-monitor ge-4/0/0 weight 255
  5. Redundant Ethernet interfaces
    {primary:node1}
    user@host# set interfaces ge-0/0/0 gigether-options redundant-parent reth1
    {primary:node1}
    user@host# set interfaces ge-4/0/0 gigether-options redundant-parent reth1
    {primary:node1}
    user@host# set interfaces fe-1/0/0 fastether-options redundant-parent reth0
    {primary:node1}
    user@host# set interfaces fe-5/0/0 fastether-options redundant-parent reth0
    {primary:node1}
    user@host# set interfaces reth0 redundant-ether-options redundancy-group 1
    {primary:node1}
    user@host# set interfaces reth0 unit 0 family inet address 10.16.8.1/24
    {primary:node1}
    user@host# set interfaces reth1 redundant-ether-options redundancy-group 1
    {primary:node1}
    user@host# set interfaces reth1 unit 0 family inet address 1.2.0.233/24
  6. Security zone
    {primary:node1}
    user@host# set security zones security-zone Untrust interfaces reth1.0
    {primary:node1}
    user@host# set security zones security-zone Trust interfaces reth0.0
  7. Access
    {primary:node1}
    user@host# set security policies from-zone Trust to-zone Untrust policy ANY match source-address any
    {primary:node1}
    user@host# set security policies from-zone Trust to-zone Untrust policy ANY match destination-address any
    {primary:node1}
    user@host# set security policies from-zone Trust to-zone Untrust policy ANY match application any
    {primary:node1}
    user@host# set security policies from-zone Trust to-zone Untrust policy ANY then permit

[Contents] [Prev] [Next] [Index] [Report an Error]