We have A+B power delivered 3 phase to the racks, broken out on PDUs, but I
think I must have been thinking about another platform in regards to not
splitting PSUs across phases.
Thanks!
On Thu, 23 Mar 2023, 09:15 Mark Tinka via juniper-nsp, <
juniper-nsp@puck.nether.net> wrote:
>
>
> On
Hi all.
I had this idea in my head that MX960 power supplies should not be split
across phases, but I cant find anything in any documentation that says that.
Can anyone comment on whether multiple phases per PEM are supported, or
whether its even a reasonable idea to put into practice?
My
onfig is configured in foreground
> under
> Interface stanza without the apply-groups config.
>
> Regards,
> Balasankar
>
> > -Original Message-
> > From: juniper-nsp On Behalf Of Tom
> > Storey
> > Sent: Friday, August 24, 2018 3:35 PM
>
Hi everyone. I am trying to build some configuration groups with the
intention of keeping related configuration for some IPSEC VPNs etc nicely
contained in one spot - define all relevant configuration in a group and
apply it in one go, and also remove it *all* when you delete and remove the
Thinking out loud.
Wouldnt that assume that you always access your REs inband, therefore
only ever connecting to the master? What if you access them out of
band via their ethernet ports. Each RE then needs its own unique key?
I mean, in theory they probably dont (is there anything to stop
On 13 January 2016 at 22:32, Mark Tinka wrote:
> A more current RE means you can run more recent Junos releases. I
> haven't run the RE-S-2000 in a while, so not sure how well it's
> supported by current Junos releases (someone else who has the older RE's
> might want to
Ive been through this myself. The short of it is that you will need a
VPLS instance for each VLAN you wish to carry on SRX.
I dont remember the exact details, but the MX do some "magic" to
automatically carry multiple VLANs through a single VPLS instance,
whereas the SRX do not.
Try as you
According to libslax documentation, which is also the base of Junipers
implementation, the version statement indicates the minimum SLAX
language version required to run your script.
You can find libslax documentation here:
http://www.libslax.org/the-slax-language
On 22 December 2015 at 20:50,
But would that be +14 assuming no VLAN headers, +18 assuming 1 VLAN
header, +22 assuming q-in-q ?
Was always my understanding that JunOS MTU figures were on-the-wire
frame sizes, whereas Cisco was always payload sizes, with requisite
headers accounted for automagically.
On 19 December 2015 at
Use DHCP helper to point to an existing DHCP server where you can
serve leases from would be my thinking.
On 10 November 2015 at 01:15, Sebastian Bermeo
wrote:
> If this device not support this service, what kind of configuration may I
> use to run this function? I
On 29 September 2015 at 15:39, Phil Shafer wrote:
> "show | compare"
o/t but is there any difference between "show | compare" and "show | diff" ?
___
juniper-nsp mailing list juniper-nsp@puck.nether.net
Normal shutdown.
This is the reason recorded at the end of the shutdown process. Any action
that causes the re to reboot at this stage is equal.
On 14 Aug 2015 7:37 am, james list jameslis...@gmail.com wrote:
Hi
In the second case if instead of hitting enter after the normal shutdown
you
I wonder if some double sided tape would suffice to hold it in place
until it needed to be replaced?
On 25 July 2015 at 00:13, Markus unive...@truemetal.org wrote:
Am 23.07.2015 um 15:26 schrieb Colin Baker:
Recently had a hard drive fail on one of our RE-850 in an M7i. Does
anyone have a
Fixed.
Maybe the battery is dieing on the RE and some settings reset, but it
seems the boot list in the BIOS was set to LAN only.
Set it back to PMC,CF,HD,LAN and its back up and running.
Thanks for listening!
Tom
On 17 June 2015 at 16:25, Tom Storey t...@snnap.net wrote:
Hi everyone. I
Hi everyone. I powered off an M7i yesterday to relocate it to a new
rack, and after powering back on it seems to have forgotten it has a
CF and HDD or even a PCMCIA slot, and is only attempting to boot from
ethernet.
e.g.
Will try to boot from :
Ethernet
Boot Sequence is reseted due to a PowerUp
just fine. Strange that it wouldnt
work the other way around...
On 13 March 2015 at 17:06, Tom Storey t...@snnap.net wrote:
Hi Nick,
Yeah, I dont believe Juniper support NHRP, thats a Cisco thing.
I just tried replacing my Tunnel config with a Virtual-Template
config, I now get an IPSec SA
): http://pastebin.com/nPXTcdvj
On 13 March 2015 at 19:08, Nick Cutting ncutt...@edgetg.co.uk wrote:
Very nice, your EMM is much better than mine !
-Original Message-
From: Tom Storey [mailto:t...@snnap.net]
Sent: 13 March 2015 18:09
To: Nick Cutting
Cc: cisco-nsp; juniper-nsp
Hi everyone,
Trying to establish an IPSec tunnel (route based) between a Juniper
SRX and a Cisco IOS router.
The topology is two routers with DSL services, the SRX is on a dynamic
IP, the Cisco on a static. No NAT is involved in the path between the
two routers.
Heres the configs Im working on:
] On Behalf Of Nick
Cutting
Sent: 13 March 2015 16:25
To: Tom Storey; cisco-nsp; juniper-nsp@puck.nether.net
Subject: Re: [c-nsp] Help with an IPSec scenario
I tried to get this to work for weeks, in the end, I used dyn-dns on the
Juniper side, and ran an EMM script on the cisco router (2911
Interesting, Ive got a couple of MX960's with high line AC PEMs in front of
me, and if I only turn one of them on, I only get half a router powered up.
As far as I know, there is still zoning with high line AC PEMs.
PEM0 and PEM2 supply one half of the router (slots 0-5 and RE0 and one fan
tray),
Benghozi olivier.bengh...@wifirst.fr
wrote:
If you use one 10x10GE MIC and one 20x1GE, on the paper 120 Gb/s would
mean no oversubscribing, but how the capacity will be really divided?
Tom Storey t...@snnap.net wrote :
As was explained to me a while back, the MPC3E has ~120gbit of capacity
As was explained to me a while back, the MPC3E has ~120gbit of capacity.
But the devil was in how that capcity is shared between the two MIC slots.
When you have two active MICs that capacity is divided equally between the
two MICs: 50/50% or ~60/60gbps. It is NOT a case of operate one card at
Hi everyone.
Im trying to set up a route based VPN between a Cisco IOS router (1841) and
a Juniper SRX, where the Cisco is sitting behind NAT and the Juniper is out
on the public Internet.
My tunnel interfaces arent coming up at either end, but I feel like Im
teetering on the edge of success.
interfaces ge-0/0/0.0
set security zones security-zone INSIDE interfaces lo0.0
set security zones security-zone INSIDE interfaces st0.0
set security zones security-zone INSIDE interfaces gr-0/0/0.0
-
-Original Message-
From: Tom Storey
Found an ebay listing with some pictures of a T1600 power supply
(T640/T1600/T4000, its all the same chassis so the pinout should be
the same) that also includes a description of each pin on the power
supply...
http://www.potomacescrap.com/ebay/images/STORE-5409-0005.JPG
Hi everyone.
The SRX240 works pretty well as an MPLS/VPLS platform when stuck in packet mode.
I am wondering if the SRX550 operates in a similar way?
Has anyone out there used an SRX550 as a slightly more high powered
xPLS platform? Of particular interest it has 10GE modules available
that the
Cost, essentially.
I have recommended the MX5-MX80 series instead, being a proper routing
platform, but was asked to find other options too.
On 16 Apr 2014 20:07, Chris Jones ipv6fre...@gmail.com wrote:
Why not an MX instead?
On Wed, Apr 16, 2014 at 11:41 AM, Tom Storey t...@snnap.net wrote
, March 29, 2014 11:32 PM
To: Tom Storey
Cc: Juniper Maillist
Subject: Re: [j-nsp] J2300/J4300 FPCs cannot go online
Hi,
Same here
Seems there are more expired certificates.
We'll have to try JTAC - however, I'm not sure if they can help - these boxes
are long out of support.
Any other
show int diag optic interface
Some interfaces don't support it as mentioned, e.g. the fixed optic
STM-64/OC-192 PICs in my experience. Otherwise I haven't come across a PIC
that takes pluggable optics that this didn't work on, as long as the optic
supports DOM I guess.
On Friday, 21 March 2014,
Hi all. Sorry for the noise on this topic, but Im getting my feet very
wet right now. :-)
Im passing on the access port idea from my previous email at the moment.
Right now Im trying to get a different configuration working, whereby
I assign multiple units of one interface in to a VPLS routing
Thanks for the responses so far, heres a few more details about what
Im experiencing at the moment.
So I start with something like this:
# show interfaces ge-0/0/12
description VPLS test interface;
encapsulation ethernet-vpls;
unit 0 {
family vpls;
}
And I want to pop the VLAN header on
Hi everyone.
Im playing around with VPLS between 3x SRX240's and looking for a little info.
Ive got an interface configured as such:
ge-0/0/12 {
vlan-tagging;
encapsulation flexible-ethernet-services;
unit 123 {
encapsulation vlan-vpls;
vlan-id 123;
}
}
And
Ok, so then you could in theory just leave the site-range command out
of a VPLS config in order to go by default values, unless you needed
to enforce a maximum site count?
On 8 January 2014 11:56, Saku Ytti s...@ytti.fi wrote:
On (2014-01-08 00:21 +), Tom Storey wrote:
Hi Tom,
From
Hi all,
Could someone validate my understanding (or lack of) about the purpose
of the site-range command...
From the reading around I have done, the site-range basically
indicates how many sites maximum can/should exist for a given VPLS.
This tells the routers how many labels should be reserved
Hi everyone.
Whats the general consensus about using a J series entirely in packet mode?
Are there any gotchyas to be wary of, like missing features,
performance hit? It looks like you can configure 3 address families
for packet mode (iso, inet6, mpls) but not inet4. But, from what Im
reading,
On 19 December 2013 14:39, Phil Mayers p.may...@imperial.ac.uk wrote:
performance hit? It looks like you can configure 3 address families
for packet mode (iso, inet6, mpls) but not inet4. But, from what Im
reading, enabling MPLS packet mode forces the whole box in to packet
mode, including
Excellent. Seems the prospects are good then. :-)
No new purchases.
On 19 December 2013 14:25, Tom Storey t...@snnap.net wrote:
Hi everyone.
Whats the general consensus about using a J series entirely in packet mode?
Are there any gotchyas to be wary of, like missing features,
performance
From: Phil Mayers p.may...@imperial.ac.uk javascript:_e({}, 'cvml',
'p.may...@imperial.ac.uk');
Date: 19/12/2013 6:09 PM (GMT+03:00)
To: Tom Storey t...@snnap.net javascript:_e({}, 'cvml',
't...@snnap.net');
Cc: juniper-nsp@puck.nether.net javascript:_e({}, 'cvml',
'juniper-nsp
');');
Date: 19/12/2013 6:09 PM (GMT+03:00)
To: Tom Storey t...@snnap.net javascript:_e({}, 'cvml',
't...@snnap.net'); javascript:_e({}, 'cvml',
't...@snnap.net javascript:_e({}, 'cvml', 't...@snnap.net');');
Cc: juniper-nsp@puck.nether.net javascript:_e({}, 'cvml',
'juniper-nsp@puck.nether.net
Interesting. Has anyone tried this with protocols like IS-IS and with IPv6?
I'd love to add an EX3200 to my lab, but shelling out for a license would
make it a bit too expensive.
On 27 Nov 2013 00:25, Paul S. cont...@winterei.se wrote:
From what I've seen, the license is mainly a 'nag license,'
Why so much just to enable some ports? How do they come up with that
kind of price? Pluck it out of thin air?
The hardware has been paid for, and I know thats only list pricing,
but it still seems ridiculous.
On 8 November 2013 16:46, Paul Nazario naza...@doit.wisc.edu wrote:
That is what we've
Isnt that the whole point of the OSI model? To separate different layers
and make them independent of each other so that one layer doesnt need to
care about ones above or below it as such?
With that in mind, different optics shouldnt have any kind of bearing on
LACP, which should only need a
The thing thats confusing me is, who on earth presents a service to a
customer as a tagged service? Ive never come across such a thing.
If you're plugged in to a router interface on the providers side, why is
there a need to add VLAN tagging on top? Similarly, if you're plugged in to
a switch,
Hi all.
It seems that older SLAX implementations dont have the ability to redefine
variable (Juniper is calling them immutable variables). This is apparently
fixed in 1.1 on JunOS12+ boxes with something called a mutable variable
(defined with mvar instead of var) but all of the boxes I am using
.
On 7 June 2013 11:43, Phil Mayers p.may...@imperial.ac.uk wrote:
On 07/06/13 09:54, Tom Storey wrote:
But without being able to redefine a variable, and with variables defined
inside an IF block not being accessible outside of that IF block, I will
need to reproduce my output code numerous
f two or more people are trying to share the same IP on an on-demand type
basis, then the router needs to keep some kind of session table to be able
to return traffic to the correct end user should something come by at a
random interval.
And this is essentially what NAT is doing anyway, so
There was some discussion on it just recently. Apparently a bunch of
messages got held up, and while playing around with mailman Jared managed
to free them up.
In response to the question, you could also do a load replace terminal
and paste in the formatted config for the entire stanza. Might be
So I imagine that might help with latency, but is it going to have any
affect on bit rate throughput?
On 9 April 2013 21:05, Chuck Anderson c...@wpi.edu wrote:
On Tue, Apr 09, 2013 at 11:48:36AM -0700, joel jaeggli wrote:
On 4/9/13 11:15 AM, Tom Storey wrote:
Hey all.
A colleague
Hey all.
A colleague of mine tells me that, if you have a single stackable switch
(not in a stack obviously) and do not loop the two stacking ports on the
back using the stacking cable that comes in the box, then you reduce the
effective throughput of the switch.
Specifically I am talking about
Tyco/Lineage Power make a couple of products that I have used personally
for powering Juniper routers and other telco equipment.
There are two 1RU shelves that can take 4 rectifier bricks each, one made
to take 2kW rectifiers with 10A inputs, the other 2.7kW with 16A inputs.
The 10.8kW shelves I
Is it feasible to make multiple copies of the CF card for each router (dd
style), customise each copy with the licenses required for a given class,
then swap CFs depending on the class?
Whats more expensive or valuable, your time, or a bunch of CF cards? :-)
On 1 February 2013 13:03, Mark
You could simplify it a little with an as-path-group and only need a single
term to match both.
You could also combine them in to a single regex like so:
(65204|65205) .*
Here is some information about as-path regexs from Juniper that also
confirms that () is null, i.e. originated in your AS.
When you set the password on the Juniper, did you by any chance
enclose the password text in , e.g. password ?
If you did, the is encoded as part of the password, rather than
suggesting everything inside quotes is the password like it does
with other things (like interface descriptions.)
I hit
Hi all.
I upgraded my SRX100 to 12.1 (specifically R2.9) about a month and a
half ago. On Sunday I went to look at my mrtg graphs and noticed that
for about the past 5 weeks or so no traffic has been recorded.
I looked into my mrtg config to make sure it was ok (Im using
interface name instead
Hi all, hoping there is someone familiar with J Series flow handling
that can help me out with this.
I have a network situation (deliberate by design, not accidental in
any sense) that results in asymmetric data flow. There are 3 devices
involved, a PC, J2320, and a Cisco 1811. The PC is plugged
On 8 August 2012 15:00, Tom Storey t...@snnap.net wrote:
Hi all, hoping there is someone familiar with J Series flow handling
that can help me out with this.
I have a network situation (deliberate by design, not accidental in
any sense) that results in asymmetric data flow. There are 3 devices
What about forcing the use of configure exclusive and configure
private as opposed to plain configure? This way you're either
locking configuration of the box to yourself for a good reason, or
multiple people/systems can work on configuration simultaneously?
Its a tiny pain to get used to in the
An ISP I used to work for shaped/policed every single session at the
LNS, downstream towards the customer, to the maximum service speed of
their purchased plan.
If a customer suddenly becomes the target of a DoS attack, you dont
want hundreds or thousands of megabits flooding onto your expensive
Has anyone measured the actual power consumption of a J2320 with a
watt meter and have the results handy?
Im looking at sticking one into co-lo, and Junipers documentation
says, from the way Im reading it, 1.3 amps at 240v. But in my
experience gear tends to use a lot less than the manufacturer
of J2350 running about 200mbits through traffic each and
they together use about 1A under 120v (juding from my power strip) . Hope
it will helps your decision.
Cheers.
On Mon, Jun 18, 2012 at 2:42 PM, Tom Storey t...@snnap.net wrote:
Has anyone measured the actual power consumption of a J2320
Assuming space were not an issue, is there a reason why you might
avoid something like an M320, or maybe a T320, being the traditional
multi-protocol boxes?
Im just a curious bystander, trying to learn. :-)
On 23 May 2012 10:33, Per Granath per.gran...@gcc.com.cy wrote:
MX240, with redundant
Hi all,
I am trying to debug some stubborn circuits that just dont seem to
want to work. I can see incoming packets being recorded on both
interfaces (10GE, both on the same router), but I cannot ping across
either link. Ive verified with the owner of the router at the other
end and we are using
What software are you running on your SRX's?
The only reason I ask is that I am running 10.4R4.5 on an SRX100, and
this is how I do my VLANs (SRX is in flow mode, but does that really
matter to L2??):
interfaces {
fe-0/0/1 {
description ** Trunk to esxi1;
unit 0 {
On 3 April 2012 15:41, Julien Goodwin jgood...@studio442.com.au wrote:
If you can be strict about it you can say anything but up/up and
down/down are problems.
What about SONET/SDH interfaces that display down/up?
The interface can be admin down, but if its still receiving a
SONET/SDH signal
, Doug Hanks dha...@juniper.net wrote:
15. Should be fine for personal use. It really just spawns another
instance of rpd.
Thank you,
--
Doug Hanks - JNCIE-ENT #213, JNCIE-SP #875
Sr. Systems Engineer
Juniper Networks
On 2/29/12 9:51 AM, Tom Storey t...@snnap.net wrote:
Hi everyone
Hi everyone.
Can anyone provide any pointers for the maximum number of logical
systems one could expect to run on an M7i?
As I understand it, each logical system has its own batch of processes
running on the RE, so I am assuming the number is going to be some
function of how much RAM you have on
Dotted unit numbers is an interesting concept. Why not both? :-)
On 27 December 2011 22:28, Benny Amorsen benny+use...@amorsen.dk wrote:
Saku Ytti s...@ytti.fi writes:
What ever you do, also open enhancement request. This is extremely
annoying
and trivial to fix.
(While at it JNPR, give
You could stick something in the description of the interface, like some
sort of tag, and then just do a show int desc | match tag.
Something along the lines of
description Customer X [qq=1010.7];
or some such. No scripts or databases to maintain either, infact a script
could automatically
The Pipe International blog is excellent, I followed it from start to
finish while it was happening. It gives a real insight that has probably
never been given before about the construction of a submarine cable, and
some of the operational aspects (at least not on a free for all public
blog).
Its not DHCPv6, as last time I looked (which admittedly was a while ago)
there were still a lot of OS's/devices lacking (decent) DHCPv6 support, but
heres a working SLAAC config that I use on my SRX100 at home (10.4R4.5)
hanging off a HE.net tunnel:
interfaces {
ip-0/0/0 {
unit 0 {
Is that device running any kind of firewall? Seems likely if you can ping
from it.
On 26 August 2011 16:26, Pappas, AJ apap...@ottawaregional.org wrote:
I am have a ex4200 that is configured for a particular vlan vlan 244.
This vlan is configured on 2 ports. I can reach one device fine, the
Or where MLPPP is not possible (since some ISPs dont allow it for various
reason), some sort of E/IGP and an appropriate multipath/equal cost routing
config?
Perhaps not as seamless as MLPPP as you'll need to wait for the protocol to
realise the other end is no longer there, but on the way down I
Im sure this question has been asked before, but googling and reading
examples and the JUNOS documentation has not yeilded an answer yet.
I have a classic network example whereby my WAN IP address is
dynamically assigned, but every configuration example I have seen
specifically states the
On 13/02/2009, at 6:21 PM, Tore Anderson wrote:
Hey, Juniper, if you're reading this: Do you think that I ENJOY
wasting
hours of my to clear up the mess this «feature» has caused,
If using MRTG, and particularly if you use cfgmaker, you could always
specify the -ifref=descr option.
Hello,
I have configured following policer
policer bw-1500k.5ms {
if-exceeding {
bandwidth-limit 150;
burst-size-limit 1500;
}
then discard;
}
believing it will rate limit traffic to 1500 Kbps. But it starts to drop
packets at much less than configured
On 16 Dec 2008 at 12:24, Tom Storey wrote:
[...]
Can anyone confirm if DDR400 will work with a J2300? I understand this
is
able to fall back to DDR266.
Yep, that's just the spec. The clock is supplied by the chipset.
If I'd planned ahead I would have used the memory I pulled from my
Hi all,
Can anyone confirm if DDR400 will work with a J2300? I understand this is
able to fall back to DDR266.
If DDR400 wont work, is anyone able to confirm if any old DDR266 stick
will work, or does it have to be a specific brand or have specific
features?
Thanks.
Tom
Hi all, hopefully not too off topic.
Im looking for some advice on getting started with Juniper.
A J2300 (with 2xE1 and 2xFE) has come up that might be in my price range,
and if it is Id be very interested in buying it.
At present Im very much a Cisco person, but Ive always been interested in
This makes it more useful than the Nexus. MPLS = good.
If youre looking at using it in an SP environment, yes.
But the Nexus isnt targeted at SP environments...
___
juniper-nsp mailing list juniper-nsp@puck.nether.net
79 matches
Mail list logo