Help us improve your experience.

Let us know what you think.

Do you have time for a two-minute survey?


SRX550 Services Gateway Software Features and Licenses


The services gateway provides the software features listed in Table 1.


Some software features require the purchase of a separate license.

For information about features that require a license on this services gateway, see the Installation and Upgrade Guide for Security Devices.

Table 1: Software Features and Licenses

Feature Category





Routing Information Protocol version 1 (RIPv1) and version 2 (RIPv2)

Static routes

Intermediate System-to-Intermediate System (IS-IS)

Connectionless Network Service (CLNS):

  • End System-to-Intermediate System (ES-IS) protocol

  • IS-IS extensions

  • BGP extensions

  • Static routes

Note: CLNS is available only in packet-based mode.


  • Layer 2 and Layer 3 virtual private networks (VPNs)

  • VPN routing and forwarding (VRF) table labels

  • Traffic engineering protocols such as LDP and RSVP

  • Virtual private LAN service (VPLS)

  • Multicast VLAN

Note: MPLS is available in both packet-based mode and selective packet mode.

Internet protocols

  • IPv4

  • IPv6 routing and forwarding

IP address management

  • Static addresses

  • Dynamic Host Configuration Protocol (DHCP) 8



  • Media access control (MAC) encapsulation

  • 802.1p tagging

  • Point-to-Point Protocol over Ethernet (PPPoE)

  • Circuit cross-connect (CCC)

  • Translational cross-connect (TCC)

Synchronous Point-to-Point Protocol (PPP)

Frame Relay

High-Level Data Link Control (HDLC)

802.1Q filtering and forwarding

Multilink Frame Relay (MLFR)

Multilink PPP

Ethernet switching

Line-rate Ethernet switching provided by XPIMs, including support for VLANs, spanning tree, link aggregation, and authentication


IPsec VPN for site-to-site or remote access encrypted tunneling

Antivirus filtering, including full antivirus file-based scanning or Express-AV packet-based scanning

Antispam and anti-phishing filtering

Web filtering

Content filtering based on file types and types of files within HTTP and HTTPS

Unified threat management (UTM)

Network attack detection

Denial of service (DoS) and distributed denial of service (DDoS) protection

Generic routing encapsulation (GRE), IP-over-IP, and IP Security (IPsec) tunnels

Advanced Encryption Standard (AES) 128-bit, 192-bit, and 256-bit

56-bit Data Encryption Standard (DES) and 168-bit 3DES encryption

MD5 and Secure Hash Algorithm 1 (SHA-1) authentication

Stateful firewall and stateless packet filters

Network Address Translation (NAT)

System management

Junos XML protocol XML application programming interface (API)

The J-Web browser interface—For services gateway configuration and management

Junos OS command-line interface (CLI)—For services gateway configuration and management through the console through Telnet, or SSH

Simple Network Management Protocol version 1 (SNMPv1), SNMPv2, and SNMPv3

Network and Security Manager (NSM)

J-Flow flow monitoring and accounting

Traffic analysis

Packet capture

Real-time performance monitoring (RPM)

System log

Activity logging and monitoring

The J-Web interface event viewer


Supports the following external administrator databases:





Configuration rollback

Button-operated configuration rescue (the CONFIG button)

Confirmation of configuration changes

Software upgrades

Supports the following features for automating network operations and troubleshooting:

  • Commit scripts

  • Operation scripts

  • Event policies


GPIMs and XPIMs are not hot-swappable on the SRX550 Services Gateway.

Bypass ports

LAN bypass ports are not supported on the SRX Series Services Gateways.