[
Contents]
[
Prev]
[
Next]
[
Index]
[
Report an Error]
CLI Configuration
- Configure interfaces.
- user@host# set interfaces ge-0/0/0 unit 0 family inet
address 10.1.1.1/24
- user@host# set interfaces ge-0/0/2 unit 0 family inet
address 1.1.1.1/24
- user@host# set security zones security-zone private
interface ge-0/0/0.0
- Configure addresses.
- user@host# set security zones security-zone private
address-book address phone1 10.1.1.3/32
- user@host# set security zones security-zone public
address-book address proxy 10.1.1.3/32
- user@host# set security zones security-zone public
address-book address phone2 1.1.1.4/32
- Configure zones.
- user@host# set security zones security-zone private
- user@host# set security zones security-zone public
- user@host# set security zones security-zone private
interfaces ge-0/0/0.0
- user@host# set security zones security-zone public
interfaces ge-0/0/2.0
- Configure the source NAT pool.
- user@host# set security nat source-nat address-persistent
- user@host# set security nat interface ge-0/0/2.0 source-nat
pool sip-pool address-range low 1.1.1.20 high 1.1.1.60
- user@host# set security nat interface ge-0/0/2.0 source-nat
pool sip-pool allow incoming
- Configure policies.
- user@host# set security policies from-zone private
to-zone public policy outgoing match source-address phone1 destination-address
any application junos-sip
- user@host# set security policies from-zone private
to-zone public policy outgoing then permit source-nat pool sip-pool
- user@host# set security policies from-zone private
to-zone public policy incoming match source-address any destination-address
incoming-nat-sip-pool application junos-sip
- user@host# set security policies from-zone public to-zone
private policy incoming then permit
[
Contents]
[
Prev]
[
Next]
[
Index]
[
Report an Error]