<?xml version="1.0" encoding="UTF-8"?>
<!-- generator="FeedCreator 1.8" -->
<?xml-stylesheet href="https://jal.tw/lib/exe/css.php?s=feed" type="text/css"?>
<rss version="2.0">
    <channel xmlns:g="http://base.google.com/ns/1.0">
        <title>脆笛酥的家 - juniper:srx</title>
        <description></description>
        <link>https://jal.tw/</link>
        <lastBuildDate>Tue, 12 May 2026 23:35:21 +0000</lastBuildDate>
        <generator>FeedCreator 1.8</generator>
        <image>
            <url>https://jal.tw/_media/wiki:dokuwiki.svg</url>
            <title>脆笛酥的家</title>
            <link>https://jal.tw/</link>
        </image>
        <item>
            <title>gui-log</title>
            <link>https://jal.tw/juniper:srx:gui-log?rev=1338799077&amp;do=diff</link>
            <description>Juniper SRX Web GUI display traffic log

由於預設 SRX 之 Web GUI 不會顯示 traffic log (即使有開啟 logging @ policy)，仍然是不會顯示

Configuration

jal.120604: 加入以下 config 後，其實看起來 log 還是會有問題，很想開 case 去 Juniper 問，為何 Log 都會遲到，無法跟 NetScreen 一樣是即時的。</description>
            <author>anonymous@undisclosed.example.com (Anonymous)</author>
            <pubDate>Mon, 04 Jun 2012 08:37:57 +0000</pubDate>
        </item>
        <item>
            <title>l2-mode</title>
            <link>https://jal.tw/juniper:srx:l2-mode?rev=1334727100&amp;do=diff</link>
            <description>Juniper SRX Layer 2 transperent mode configruration

SRX base on JUNOS, so SRX L2 mode will use Integrated Routing and Bridging Interfaces(aka irb) to work.

Requirements

	*  From JUNOS 11.1, Layer 2 transparent mode support is available on all SRX platforms.
		*  SRX100, SRX210, SRX220, SRX240, and SRX650.</description>
            <author>anonymous@undisclosed.example.com (Anonymous)</author>
            <pubDate>Wed, 18 Apr 2012 05:31:40 +0000</pubDate>
        </item>
        <item>
            <title>tcp-syn-check</title>
            <link>https://jal.tw/juniper:srx:tcp-syn-check?rev=1352360381&amp;do=diff</link>
            <description>SRX disable tcp-syn-check

Layer3 or Layer2 去回不同路所導致不通，因為 session table 只會有單邊的 session，firewall 會認定它是異常流量而把封包丟掉，在 SRX 上的 Command 如下

	*  關閉 TCP SYN check

# set security flow tcp-session no-syn-check</description>
            <author>anonymous@undisclosed.example.com (Anonymous)</author>
            <pubDate>Thu, 08 Nov 2012 07:39:41 +0000</pubDate>
        </item>
    </channel>
</rss>
