SRX550 Services Gateway Software Features and Licenses

The services gateway provides the software features listed in Table 3.

Note: Some software features require the purchase of a separate license.

For information about features that require a license on this services gateway, see the Junos OS Administration Guide for Security Devices PDF Document.

Table 3: Software Features and Licenses

Feature Category

Feature

Routing

OSPF

BGP

Routing Information Protocol version 1 (RIPv1) and version 2 (RIPv2)

Static routes

Intermediate System-to-Intermediate System (IS-IS)

Connectionless Network Service (CLNS):

  • End System-to-Intermediate System (ES-IS) protocol
  • IS-IS extensions
  • BGP extensions
  • Static routes

Note: CLNS is available only in packet-based mode.

MPLS:

  • Layer 2 and Layer 3 virtual private networks (VPNs)
  • VPN routing and forwarding (VRF) table labels
  • Traffic engineering protocols such as LDP and RSVP
  • Virtual private LAN service (VPLS)
  • Multicast VLAN

Note: MPLS is available only in packet-based mode.

Note: Security features cannot be configured when MPLS or IPv6 is used.

Internet protocols

  • IPv4
  • IPv6 routing and forwarding

IP address management

  • Static addresses
  • Dynamic Host Configuration Protocol (DHCP) 8

Encapsulation

Ethernet:

  • Media access control (MAC) encapsulation
  • 802.1p tagging
  • Point-to-Point Protocol over Ethernet (PPPoE)
  • Circuit cross-connect (CCC)
  • Translational cross-connect (TCC)

Synchronous Point-to-Point Protocol (PPP)

Frame Relay

High-Level Data Link Control (HDLC)

802.1Q filtering and forwarding

Multilink Frame Relay (MLFR)

Multilink PPP

Ethernet switching

Line-rate Ethernet switching provided by XPIMs, including support for VLANs, spanning tree, link aggregation, and authentication

Security

IPsec VPN for site-to-site or remote access encrypted tunneling

Antivirus filtering, including full antivirus file-based scanning or Express-AV packet-based scanning

Antispam and anti-phishing filtering

Web filtering

Content filtering based on file types and types of files within HTTP and HTTPS

Unified threat management (UTM)

Network attack detection

Denial of service (DoS) and distributed denial of service (DDoS) protection

Generic routing encapsulation (GRE), IP-over-IP, and IP Security (IPsec) tunnels

Advanced Encryption Standard (AES) 128-bit, 192-bit, and 256-bit

56-bit Data Encryption Standard (DES) and 168-bit 3DES encryption

MD5 and Secure Hash Algorithm 1 (SHA-1) authentication

Stateful firewall and stateless packet filters

Network Address Translation (NAT)

System management

Junos XML protocol XML application programming interface (API)

The J-Web browser interface—For services gateway configuration and management

Junos OS command-line interface (CLI)—For services gateway configuration and management through the console through Telnet, or SSH

Simple Network Management Protocol version 1 (SNMPv1), SNMPv2, and SNMPv3

Network and Security Manager (NSM)

J-Flow flow monitoring and accounting

Traffic analysis

Packet capture

Real-time performance monitoring (RPM)

System log

Activity logging and monitoring

The J-Web interface event viewer

Traceroute

Supports the following external administrator databases:

  • RADIUS/AAA
  • TACACS+

Administration

Autoinstallation

Configuration rollback

Button-operated configuration rescue (the CONFIG button)

Confirmation of configuration changes

Software upgrades

Supports the following features for automating network operations and troubleshooting:

  • Commit scripts
  • Operation scripts
  • Event policies

Hot-swappable

SRX550 Services Gateway does not support hot-swappable functionality for GPIMs and XPIMs.

Bypass ports

Ports 0/4 and 0/5 are automatically connected together when the services gateway is powered off. This feature can be used to bypass the device in the event of a power failure.

Related Documentation