Documente Academic
Documente Profesional
Documente Cultură
root@%cliroot>
configure [edit]root#
[edit]root# set system login user admin class super-user authentication plain-text-
password
[edit]root# commit
12. Configure basic security zones and bind them to traffic interfaces.
[edit]admin# set security zones security-zone untrust interfaces ge-0/0/0 admin# set
security zones security-zone trust interfaces ge-0/0/1 admin# set security zones
security-zone trust interfaces ge-0/0/1.0 host-inbound-traffic system-services all
admin# set security zones security-zone trust interfaces ge-0/0/1.0 host-inbound-
traffic protocols all
[edit]admin# set security policies from-zone trust to-zone untrust policy policy-name
match source-address any destination-address any application any admin# set
security policies from-zone trust to-zone untrust policy policy-name then permit
14. Create a Network Address Translation (NAT) rule for source translation of all Internet-
bound traffic.
[edit]admin# set security nat source rule-set interface-nat from zone trust admin# set
security nat source rule-set interface-nat to zone untrust admin# set security nat
source rule-set interface-nat rule rule1 match source-address 0.0.0.0/0 destination-
address 0.0.0.0/0admin# set security nat source rule-set interface-nat rule rule1 then
source-nat interface
[edit]admin# show
19. When you have finished configuring the services gateway, exit configuration mode.
[edit]admin@device# exitadmin@device>