Thanks for all of the responses.

A few more questions:

- Can the L2 switch "feature" on the SRX240 be used when I have a pair of appliances in HA mode? The docs seem to be conflicting on this -- it appears that it may be supported in 11.x?

- Can the SRX be used as a multi-tenant firewall to provide distinct L3 public IP subnets on VLAN interfaces, with their own set of unique firewall rules, and the possibility of overlapping Untrust IP networks (e.g. multiple customers have 192.168.1.0/24), AND the ability to terminate IPSEC VPN tunnels on these VLAN interfaces? (I'm looking for something to provide multi-tenant firewall services to a small Cloud hosting infrastructure)

On 3/5/2012 5:43 PM, Tim Eberhard wrote:

I would encourage you to check out the 240. It's an amazing firewall
for the price. Stick to 10.4 or something in the 11.x code and you'll
be fine. I think you'll be shocked how stable and bug free it is after
hearing all the bad items on this list.

Good luck, hope this helps.
-Tim Eberhard


--Mike
_______________________________________________
juniper-nsp mailing list [email protected]
https://puck.nether.net/mailman/listinfo/juniper-nsp

Reply via email to