[an error occurred while processing this directive] [an error occurred while processing this directive]

Configuring the SRX650 Services Gateway 24-Port XPIM

Caution: GPIMs are not Online Insertion and Removal (OIR) capable. You must power off the services gateway before removing or inserting a GPIM. Ensure that the GPIM is installed in the appropriate GPIM slot before powering on the services gateway.

To enable the 24-Port Gigabit Ethernet XPIM installed on your SRX650 services gateway, you must configure its properties. You can perform the same configuration tasks using the J-Web interface or the CLI. In addition, you can configure a wider variety of options that are encountered less frequently.

Using the J-Web Interface

To perform basic configuration for the 24-Port Gigabit Ethernet XPIM and configure network interfaces for the services gateway with J-Web Quick Configuration:

  1. In the J-Web user interface, select Configuration>Quick Configuration >Interfaces.

    A list of the network interfaces present on the services gateway is displayed, as shown in Figure 1. The third column indicates whether the interface has been configured.

    Figure 1: Interfaces Quick Configuration Page

    Image s032702.gif

  2. To configure properties for a network interface, select the interface you want to edit.
  3. To use the port on the XPIM, you must assign it to a security zone other than the Null zone. Optionally, you can also assign the port an IP address (for example, 192.168.3.1/24). Enter or select the following settings:
    1. Select Quick Configuration>Zones.
    2. Add or select a security zone other than null, for example, Zone1.
    3. For the Host Inbound Traffic option, set the following:
      • System Services=Allow All
      • Protocols=Allow All
    4. Click OK.
    5. Click Apply to apply the configuration and return to the J-Web Quick Configuration page.
  4. To use the port on the XPIM, you must also set security policies. Select the following settings:
    1. Select Quick Configuration>Security Policies>FW/VPN Policies.
    2. Set Policy Action: Default Policy Action=Permit-All.
    3. Click Apply to apply the configuration and return to the J-Web Quick Configuration page.

For advanced configuration information, see the JUNOS Network Interfaces Configuration Guide.

Using the CLI

To perform basic configuration for the 24-Port Gigabit Ethernet XPIM and configure network interfaces for the services gateway with the CLI:

set interface ge-2/0/0 unit 0 family inet address ipaddress/mask
set security zones security-zone zone1 interfaces ge-2/0/0.0 host-inbound-traffic system-services all
set security zones security-zone zone1 interfaces ge-2/0/0.0 host-inbound-traffic protocols all
set security policies default-policy permit-all


Updated: 2009-04-23

[an error occurred while processing this directive]