Basic Configuration of the VDSL2 Annex A Mini-Physical Interface Module
To enable the VDSL2 Mini-Physical Interface Module (Mini-PIM) installed on the SRX Series Services Gateway, you must configure its properties. You can perform the same configuration tasks using either J-Web or the CLI. In addition, you can configure a wide variety of options that are not encountered frequently.
Using J-Web
To perform basic configuration for the VDSL2 Mini-Physical Interface Module (Mini-PIM) (Annex A) and to configure network interfaces for the services gateway with J-Web:
- In J-Web, select Configure>Interfaces.
The Interfaces page displays and lists the network interfaces present on the services gateway, along with configuration information (if configured).
- To configure properties for a network interface (Mini-PIM), select the interface name (pt-1/0/0), and click Edit.
- To use the port on the Mini-PIM, you must assign
it to a security zone other than the Null zone. Optionally, you can
also assign the port an IP address (for example, 192.168.3.1/24).
Enter or select the following settings:
- Select Configure>Security>Zones.
- Add or select a security zone other than Null; for example, Trust.
- For host inbound traffic, set the following:
- System Services=Allow All
- Protocols=Allow All
- Click OK to save changes, and click Commit to apply the configuration and other pending changes.
- To use the port on the Mini-PIM, you must also
set security policies. Select the following settings:
- Select Configure>Security>Policy>FW Policies
- Set Policy Action: Default Policy Action=Permit-All
- Click OK to save changes, and click Commit to apply the configuration and other pending changes (if any).
For more information, in the J-Web user interface, select Configure>Interfaces and click Help.
Using the CLI
To perform basic configuration of the VDSL2 Mini-PIM and to configure network interfaces for the services gateway with the CLI:
- Verify that the VDSL2 interface is installed on the device:
show chassis hardware
- Verify the status of the interface:
show interfaces terse
- Assign the port an IP address:
set interface pt-1/0/0 unit 0 family inet address interface address/destination prefix
- Add or select a security zone; for example, Zone1:
set security zones security-zone trust interfaces pt-1/0/0.0 host-inbound-traffic system-services all
- Add or select security zones for host inbound traffic
options protocols:
set security zones security-zone trust interfaces pt-1/0/0.0 host-inbound-traffic protocols all
- Set security policies:
set security policies default-policy permit-all
See the Junos OS Network Interfaces Configuration Guide for more details.
