Posts

Block websites or applications using SRx Firewall

Hi, everyone on today we are going discuss on how to block websites or applications now this is trending news that many officials social  media accounts are hacked. We will see in juniper SRx Firewall. Some of the websites are not easy to block using web filter because they used signature and dynamic IPs, but we can block through Application Firewall. This example uses following zones and interfaces configuration. The client system is connected to the ge-0/0/0.0 interface with IP address 4.0.0.254/24. It is part of the trust zone. The server system is connected to the ge-0/0/1.0 interface with IP address 5.0.0.254/24. It is part of the untrust zone. • Configuration 》CLI Quick Configuration To quickly configure this example, copy the following commands, paste them into a text file, remove any line breaks, change any details necessary to match your network configuration, copy and paste the commands into the CLI at the [edit] hierarchy level, and then enter commit from configuration mode.

Juniper Certification | JNCIA-JUNOS | Day-9 What is Virtual Router (vMX) ?

Let's see why this virtual machine is called vMX.  It is a full-featured carrier-grade router that offers the same quality and features of the physical MX series platform.  The vMX provides complete control over forwarding ,and management planes. This software emulation of the MX hardware is executed down to the level of compiling the microcode of forwarding ASIC into x86 instructions.  This ensures that vMX packet handling and forwarding is identical to that of a physical MX router. Stay tuned for more information to be discussed on juniper certification preparation JNCIA-JUNOS. 

Juniper Certification | JNCIA-JUNOS | Day-8 Let's talk on vSRX Virtual Firewall

Image
Hi everyone on today we are going to learn on vSRX Virtual Firewall. What is Virtual Firewall ? We can say that ,"it is like  packets for monitoring and controlling incoming and outgoing network traffic, based on predetermined security policy rules". A virtual firewall also does the same function; deployed as a software appliance, it provides network traffic filtering and monitoring for virtual machines (VMs) that are virtualized. A virtual firewall, almost like a physical firewall, works in conjunction with switches and servers to prevent unauthorized access of network or ex-filtration of data.  In this Junos OS it can also run as a virtual machine as we said above that using either VMware or kernal-based virtual machine (KVM) as the host software.  What do you meant by vSRX virtual firewall ? The vSXR virtual firewall delivers in a virtual machine, the Junos OS and SRX series advanced security for the branch SRX series devices. It protects virt

Juniper Certification | JNCIA-JUNOS | Day-7 What is SDN and Products in Juniper

On this particular day we are going to see on topic called SDN in Juniper. What is SDN ? SDN is a network software defined in networking term as Software Defined Networking. That this software do not run some Junos OS because there are group of designs made for juniper networking into cloud based solutions are made.  These are some products you need to know in juniper; NFX series are network services platform used in junos as customer premises equipment (CPE), that they are designed with these features : to provide very fast custom services  with delivery on demand they are secure on-premises can run and chains with multiple virtualisation network it functions simultaneously in an open environment   it also supports embedded vSRX security functionality Contrail Cloud it is just suite of products that enabling SDN does : network function virtualisation (NFV) and services done in cloud environment   it utilizes open technologies such as Op

Juniper Certification | JNCIA-JUNOS | Day-6 Overview of JUNOS devices

Hi everyone on today we are going to learn about JUNOS devices like Router , Switches and Security. We can tell that this new platform which are running the Junos OS to come in to many shapes in the livelihood of networking technologies and it's sizes are targeted for a number of developments in scenario we will be telling in cisco packet tracers. The platforms running in this Junos OS span with switching, routing and security as well as it is suited for a variety of network environment. For us all Junos OS provides as the heart of all platforms, which are consistent in end-to-end IP infrastructure in both small enterprise environments and it is the largest services provider networks. Now let's move on to routers in juniper JUNOS OS are; PTX series  MX series  ACX series  In PTX series in this the foundation of the IP transport architecture, PTX Series routers provide performance, optical transport integration, and elegant deployment. They support

Juniper Certification | JNCIA-JUNOS | Day-5 Exception Traffic Processing

Today friends we are going to look over exception at traffic processing  is traffic that is destined for the local system. Unlike transit traffic, exception traffic does not pass through local device. It requires some for of special handling. Now let's see this simple example if you wanted to check if the router up, you would ping its loopback address. This would be regarded as Exception Traffic, as packets destined for a device requires additional processing by the Routing Engine (RE). Traffic that requires the generation of Internet Control Message Protocol (ICMP) messages. ICMP messages are sent to the packet’s source to report various error conditions and to respond to ping requests.  When we see some examples of ICMP errors include destination unreachable messages, which are sent when no entry is present in the forwarding table for the packet’s destination address, and time-to-live (TTL) expired messages, which are sent when a packet’s TTL is decremen

Juniper Certification | JNCIA-JUNOS | Day-4 Transit Traffic Processing

Image
On this session we will proceed to Transit Traffic Processing consists of all the traffic that enters an ingress (i.e., an action of going in or entering) a network port, it is compared against the forwarding table entries and it is finally forwarded out an egress (i.e., action of going out or leaving) the network port toward its destination.  A forwarding table entry for a destination must exist for the device running the Junos OS to successfully forward transit traffic to that destination. A Transit Traffic passes through the fo rwarding plane only and is never sent to or processed by the control plane only and it is never sent to or processed by the control plane. By processing transit traffic through the forwarding plane only, platforms running the Junos OS can achieve predictably high in performance rates. From the above image we can see that Transit Traffic can be both ; Unicast Multicast I n Unicast transit traffic which enters one ingress port and it is transmi